VYPR

Beaker

by Beakerbrowser

CVEs (2)

  • CVE-2020-12079CriApr 23, 2020
    risk 0.65cvss 10.0epss 0.02

    Beaker before 0.8.9 allows a sandbox escape, enabling system access and code execution. This occurs because Electron context isolation is not used, and therefore an attacker can conduct a prototype-pollution attack against the Electron internal messaging API.

  • CVE-2013-7489MedJun 26, 2020
    risk 0.44cvss 6.8epss 0.01

    The Beaker library through 1.11.0 for Python is affected by deserialization of untrusted data, which could lead to arbitrary code execution.