AIKIDO-2025-10437

Electron is vulnerable to Heap-based Buffer Overflow

40

Medium

Electron JS

AIKIDO-2025-10437: Electron is vulnerable to Heap-based Buffer Overflow in versions 28.0.0 - 28.3.1, 29.0.0 - 29.3.2 and 30.0.0 - 30.0.2.

Heap-based Buffer Overflow
Vuln in 28.0.0 - 28.3.1
Fixed in 28.3.2
Vuln in 29.0.0 - 29.3.2
Fixed in 29.3.3
Vuln in 30.0.0 - 30.0.2
Fixed in 30.0.3
CVE-2024-46993
TL;DR

Who does this affect?

How can it be fixed?

Background info

Link to vendor website

Our intel, your security

open-source

Open-source

Aikido Intel is available under AGPL license, developers may freely use, modify, and distribute the vulnerability & malware feed.

share

License the intel database

Want to integrate our threat intelligence into your product? Get access through our commercial API.

aikido

Get protected by Aikido- it's free.

Easily secure your software supply chain, and more. Secure your your code, cloud, and runtime with Aikido’s all-in-one security platform.

Secure everything you build, host and run with Aikido

Get Secure
Logo
© 2024 Aikido Security BV | BE0792914919
🇪🇺 Registered address: Coupure Rechts 88, 9000, Ghent, Belgium
🇪🇺 Office address: Gebroeders van Eyckstraat 2, 9000, Ghent, Belgium
🇺🇸 Office address: 95 Third St, 2nd Fl, San Francisco, CA 94103, US
Any use of the intel.aikido.dev website and content is explicitly subject to Aikido Terms of Use.
The Intel vulnerability and malware feed is licensed under a dual license.