35.1.0
12 years ago
6 hours ago
Known vulnerabilities in the electron package. This does not include vulnerabilities belonging to this package’s dependencies.
Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.
Fix for freeVulnerability | Vulnerable Version |
---|---|
electron is a framework which lets you write cross-platform desktop applications using JavaScript, HTML and CSS. Affected versions of this package are vulnerable to Access of Resource Using Incompatible Type ('Type Confusion') in v8. How to fix Access of Resource Using Incompatible Type ('Type Confusion')? Upgrade | <33.4.6>=34.0.0 <34.3.4 |
electron is a framework which lets you write cross-platform desktop applications using JavaScript, HTML and CSS. Affected versions of this package are vulnerable to Use After Free through the V8 engine. How to fix Use After Free? Upgrade | <32.3.3>=33.0.0-alpha.1 <33.4.3 |
electron is a framework which lets you write cross-platform desktop applications using JavaScript, HTML and CSS. Affected versions of this package are vulnerable to Out-of-bounds Read via a crafted HTML page. An attacker can execute arbitrary code inside a sandbox by crafting a malicious HTML page. How to fix Out-of-bounds Read? Upgrade | <32.3.3>=33.0.0-alpha.1 <33.4.3 |
electron is a framework which lets you write cross-platform desktop applications using JavaScript, HTML and CSS. Affected versions of this package are vulnerable to Use After Free through the How to fix Use After Free? Upgrade | <33.4.3 |