cve/2024/CVE-2024-1648.md
2024-05-25 21:48:12 +02:00

779 B

CVE-2024-1648

Description

electron-pdf version 20.0.0 allows an external attacker to remotely obtainarbitrary local files. This is possible because the application does notvalidate the HTML content entered by the user.

POC

Reference

No PoCs from references.

Github