High severity8.8NVD Advisory· Published Sep 28, 2023· Updated Jun 17, 2026
CVE-2023-42222
CVE-2023-42222
Description
WebCatalog before 49.0 is vulnerable to Incorrect Access Control. WebCatalog calls the Electron shell.openExternal function without verifying that the URL is for an http or https resource, in some circumstances.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- WebCatalog/WebCatalogdescription
<49.0+ 1 more
- (no CPE)range: <49.0
- cpe:2.3:a:webcatalog:webcatalog:*:*:*:*:*:*:*:*range: <49.0
Patches
Vulnerability mechanics
References
3News mentions
0No linked articles in our index yet.