QID 983146
QID 983146: Nodejs (npm) Security Update for electron (GHSA-4w88-rjj3-x7wp)
Affected versions of `ElectronJS` are susceptible to a remote code execution vulnerability that occurs when an affected application access remote content, even if the [sandbox option](https://electron.atom.io/docs/api/sandbox-option) is enabled.
## Recommendation
Update to electron version 1.7.8 or later.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-4w88-rjj3-x7wp for updates pertaining to this vulnerability.
Vendor References
- GHSA-4w88-rjj3-x7wp -
github.com/advisories/GHSA-4w88-rjj3-x7wp
CVEs related to QID 983146
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-4w88-rjj3-x7wp | electron |
|