npm package
electron-updater
pkg:npm/electron-updater
Vulnerabilities (1)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2024-39698 | — | < 6.3.0-alpha.6 | 6.3.0-alpha.6 | Jul 9, 2024 | electron-updater allows for automatic updates for Electron apps. The file `packages/electron-updater/src/windowsExecutableCodeSignatureVerifier.ts` implements the signature validation routine for Electron applications on Windows. Because of the surrounding shell, a first pass by |
- CVE-2024-39698Jul 9, 2024affected < 6.3.0-alpha.6fixed 6.3.0-alpha.6
electron-updater allows for automatic updates for Electron apps. The file `packages/electron-updater/src/windowsExecutableCodeSignatureVerifier.ts` implements the signature validation routine for Electron applications on Windows. Because of the surrounding shell, a first pass by