8.8
CVSSv3

CVE-2023-31874

Published: 29/05/2023 Updated: 03/06/2023
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

Yank Note (YN) 3.52.1 allows execution of arbitrary code when a crafted file is opened, e.g., via nodeRequire('child_process').

Vulnerable Product Search on Vulmon Subscribe to Product

yank-note yank note 3.52.1

Exploits

Yank Note version 3521 suffers from an arbitrary code execution vulnerability ...