electron is vulnerable to Insufficient policy enforcement
43
Medium Risk
Insufficient policy enforcement in Loader in Google Chrome prior to 136.0.7103.113 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: High)
You are affected if you are using a version that falls within the vulnerable range.
electron is vulnerable to Insufficient policy enforcement in versions 34.0.0 - 34.5.6 and 35.0.0 - 35.4.0.
Upgrade the electron library to the patch version.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant