ZeroHour

CVE-2024-48463

PoC ×2
CVSS 3.1
6.5 medium
EPSS
<1%p49
Published
()
Modified
Description

Bruno before 1.29.1 uses Electron shell.openExternal without validation (of http or https) for opening windows within the Markdown docs viewer.

Vendors
usebruno
Products
bruno
Weakness
CWE-601
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N

In the news

No ingested article mentions this CVE yet.