Package impact

npm npm / electron

0
KEVHas exploit
Reset
CVE Severity CVSS Risk Flags OS Vendor Published Description
CVE-2023-5217 high 9.5 3y ago Google Chromium libvpx contains a heap buffer overflow vulnerability in vp8 encoding that allows a remote attacker to potentially exploit heap corruption via a crafted HTML page. This vulnerability c…
CVE-2023-4863 high 9.5 3y ago Google Chromium WebP contains a heap-based buffer overflow vulnerability that allows a remote attacker to perform an out-of-bounds memory write via a crafted HTML page. This vulnerability can affect …
CVE-2026-34769 high 8.8 8.8 2mo ago Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. Prior to versions 38.8.6, 39.8.0, 40.7.0, and 41.0.0-beta.8, an undocumented commandLineSwitche…
CVE-2017-12581 high 8.1 8.1 9y ago Electron vulnerable to remote command execution
CVE-2023-5129 high 8.0 3y ago RHSA-2023:5309: libwebp security update (Important)
CVE-2016-1202 high 7.8 7.8 10y ago High severity vulnerability that affects electron
CVE-2026-34764 medium 5.5 5.5 2mo ago Electron: Use-after-free in offscreen shared texture release() callback
CVE-2020-26272 medium 5.5 5y ago IPC messages delivered to the wrong frame in Electron