Количество 2
Количество 2
CVE-2020-26157
больше 5 лет назад
Leanote Desktop through 2.6.2 allows XSS because a note's title is mishandled during syncing. This leads to remote code execution because of Node integration.
CVSS3: 9.6
EPSS: Низкий
GHSA-pcw2-q3mm-wc8g
больше 3 лет назад
Leanote Desktop through 2.6.2 allows XSS because a note's title is mishandled during syncing. This leads to remote code execution because of Node integration.
EPSS: Низкий
Уязвимостей на страницу
20
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2020-26157 Leanote Desktop through 2.6.2 allows XSS because a note's title is mishandled during syncing. This leads to remote code execution because of Node integration. | CVSS3: 9.6 | 1% Низкий | больше 5 лет назад | |
GHSA-pcw2-q3mm-wc8g Leanote Desktop through 2.6.2 allows XSS because a note's title is mishandled during syncing. This leads to remote code execution because of Node integration. | 1% Низкий | больше 3 лет назад |
Уязвимостей на страницу
20