CVE Browser
Search and filter CVEs by severity, ecosystem, EPSS score, and more.
Page 1
CVE-2021-41392 CRITICAL
static/main-preload.js in Boost Note through 0.22.0 allows remote command execution. A remote attacker may send a crafted IPC message to the exposed vulnerable…
CVSS 9.8 EPSS 2.76% Sep 17, 2021
CVE-2018-13433 MEDIUM
Boostnote v0.11.7 allows XSS during highlighting of Markdown text, as demonstrated by an onerror attribute of an IMG element.
CVSS 6.1 EPSS 0.86% Jul 8, 2018
Showing 1 to 2 CVEs · page 1