CVEs (2)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
Leanote version 2.7.0 allows obtaining arbitrary local files. This is possible because the application is vulnerable to LFR. |
Leanote-desktop version v2.5 is vulnerable to a XSS which leads to code execution due to enabled node integration |