Known Vulnerabilities for Tauri by Tauri-apps
Listed below are 6 of the newest known vulnerabilities associated with "Tauri" by "Tauri-apps".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-95623 json | The Tauri HTTP plugin validates requested URLs against the application's configured scope allowlist only once, on the initial... | Not Provided | 2026-09-22 | 2026-09-22 |
| CVE-2026-82642 json | Readest is an open-source e-book reader built on Tauri. In versions prior to 0.11.16, EPUB chapter HTML is sanitized with DOM... | Not Provided | 2026-08-30 | 2026-08-31 |
| CVE-2026-82635 json | Pake before 3.13.1 joins the JavaScript-supplied filename for the download_file Tauri command onto the user's Downloads direc... | Not Provided | 2026-08-30 | 2026-08-31 |
| CVE-2026-55642 json | dbx is a cross-platform database client for databases. Prior to 0.5.51, dbx-web auth_middleware in crates/dbx-web/src/auth.rs... | Not Provided | 2026-08-20 | 2026-08-20 |
| CVE-2026-17497 json | NoteGen before 0.32.0 grants the Tauri shell plugin shell:allow-execute capability for bash, python, and python3 with arbitra... | Not Provided | 2026-07-26 | 2026-07-27 |
| CVE-2026-17496 json | NoteGen before 0.32.0 renders AI chat responses with markdown-it configured with html:true and injects the result into the DO... | Not Provided | 2026-07-26 | 2026-07-27 |