MEDIUM 4.3 npm
Electron vulnerable to URL spoofing via PDFium
GHSA-6h98-cf9g-vmg2 · CVE-2017-1000424
Published · Modified
Description
Electron version 1.7.0 - 1.7.5 is vulnerable to a URL Spoofing problem when opening PDFs in PDFium resulting loading arbitrary PDFs that a hacker can control.
Ready to move
Start Securing
Free, no credit card | First findings in minutes