Use After Free
Affecting org.webjars.npm:electron artifact, versions [0,]
Report new vulnerabilities
Do your applications use this vulnerable package?
Test your applications
Overview
org.webjars.npm:electron is a framework which lets you write cross-platform desktop applications using JavaScript, HTML and CSS.
Affected versions of this package are vulnerable to Use After Free in SCTP.
Remediation
There is no fixed version for org.webjars.npm:electron
.
References
CVSS Score
8.8
high severity
-
Attack VectorNetwork
-
Attack ComplexityLow
-
Privileges RequiredNone
-
User InteractionRequired
-
ScopeUnchanged
-
ConfidentialityHigh
-
IntegrityHigh
-
AvailabilityHigh
- Credit
- Unknown
- CVE
- CVE-2020-6532
- CWE
- CWE-416
- Snyk ID
- SNYK-JAVA-ORGWEBJARSNPM-598895
- Disclosed
- 09 Jul, 2020
- Published
- 29 Jul, 2020