VendorsElectronjselectron41.0.0
Vulnerabilities

Electronjs Electron 41.0.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

14CVEs
CVE-2026-34775
Electron: nodeIntegrationInWorker not correctly scoped in shared renderer processes
Published 2026-04-03 · Analyzed
9.8EPSS 0.004
CVE-2026-34769
Electron: Renderer command-line switch injection via undocumented commandLineSwitches webPreference
Published 2026-04-03 · Modified
8.8EPSS 0.004
CVE-2026-34771
Electron: Use-after-free in WebContents fullscreen, pointer-lock, and keyboard-lock permission callbacks
Published 2026-04-03 · Modified
8.8EPSS 0.004
CVE-2026-34770
Electron: Use-after-free in PowerMonitor on Windows and macOS
Published 2026-04-03 · Analyzed
8.8EPSS 0.003
CVE-2026-34772
Electron: Use-after-free in download save dialog callback
Published 2026-04-03 · Analyzed
8.8EPSS 0.002
CVE-2026-34780
Electron: Context Isolation bypass via contextBridge VideoFrame transfer
Published 2026-04-04 · Modified
8.3EPSS 0.004
CVE-2026-34774
Electron: Use-after-free in offscreen child window paint callback
Published 2026-04-03 · Modified
8.1EPSS 0.006
CVE-2026-34779
Electron: AppleScript injection in app.moveToApplicationsFolder on macOS
Published 2026-04-04 · Analyzed
7.8EPSS 0.002
CVE-2026-34768
Electron: Unquoted executable path in app.setLoginItemSettings on Windows
Published 2026-04-03 · Analyzed
7.8EPSS 0.001
CVE-2026-34773
Electron: Registry key path injection in app.setAsDefaultProtocolClient on Windows
Published 2026-04-03 · Analyzed
7.5EPSS 0.003
CVE-2026-34778
Electron: Service worker can spoof executeJavaScript IPC replies
Published 2026-04-03 · Analyzed
6.5EPSS 0.001
CVE-2026-34766
Electron: USB device selection not validated against filtered device list
Published 2026-04-03 · Analyzed
5.4EPSS 0.002
CVE-2026-34777
Electron: Incorrect origin passed to permission request handler for iframe requests
Published 2026-04-03 · Analyzed
5.4EPSS 0.001
CVE-2026-34776
Electron: Out-of-bounds read in second-instance IPC on macOS and Linux
Published 2026-04-03 · Analyzed
5.3EPSS 0.002