Builder
Todesktop · 3 CVEs
CVE-2025-67231
MEDIUM
A reflected cross-site scripting (XSS) vulnerability in ToDesktop Builder v0.33.1 allows attackers to execute arbitrary…
Jan 23, 2026
CVE-2025-67230
HIGH
Improper permissions in the handler for the Custom URL Scheme in ToDesktop Builder v0.33.0 allows attackers with render…
Jan 23, 2026
CVE-2025-67229
CRITICAL
An improper certificate validation vulnerability exists in ToDesktop Builder v0.32.1 This vulnerability allows an unaut…
Jan 23, 2026
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2025-67231 | A reflected cross-site scripting (XSS) vulnerability in ToDesktop Builder v0.33.1 allows attackers to execute arbitrary code in the context of a user's browser… | MEDIUM | 0.30% | Jan 23, 2026 |
| CVE-2025-67230 | Improper permissions in the handler for the Custom URL Scheme in ToDesktop Builder v0.33.0 allows attackers with renderer-context access to invoke external pro… | HIGH | 0.25% | Jan 23, 2026 |
| CVE-2025-67229 | An improper certificate validation vulnerability exists in ToDesktop Builder v0.32.1 This vulnerability allows an unauthenticated, on-path attacker to spoof ba… | CRITICAL | 0.27% | Jan 23, 2026 |
Showing 1 to 3 of 3 CVEs