Creating Electron app packages
97%
Total Score
99
94
93
100
100
| Title | Versions | Severity |
|---|---|---|
AIKIDO-2026-222906 Pre-CVE Found by Aikido Intel before public disclosure or CVE publication. @electron/asar is vulnerable to Path Traversal in versions 3.2.1 - 4.2.0. | 3.2.1 - 4.2.0 | Medium |
AIKIDO-2024-10255 Pre-CVE Found by Aikido Intel before public disclosure or CVE publication. @electron/asar is vulnerable to UNIX Symbolic Link (Symlink) Following in versions 0.2.0 - 3.2.10. | 0.2.0 - 3.2.10 | Medium |
| Dependency | Last Release | Score |
|---|---|---|
glob Version ^13.0.2 | — | — |
minimatch Version ^10.0.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant