ZeroHour

CVE-2023-27035

PoC ×2
CVSS 3.1
7.5 high
EPSS
2%p78
Published
()
Modified
Description

An issue discovered in Obsidian Canvas 1.1.9 allows remote attackers to send desktop notifications, record user audio and other unspecified impacts via embedded website on the canvas page.

Vendors
obsidian
Products
obsidian
Weakness
CWE-276
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.