← Back

Todesktop

todesktop

3 CVEs • 1 product

Products (1)

Click to collapse
Toggle
Builder
builder

CVEs (3)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Todesktop
1Builder
Jun 17, 2026
Jan 23, 2026
N/A· v4
5.9 MEDIUM· v3
N/A· v2
A reflected cross-site scripting (XSS) vulnerability in ToDesktop Builder v0.33.1 allows attackers to execute arbitrary code in the context of a user's browser via a crafted payload.
1Todesktop
1Builder
Jun 17, 2026
Jan 23, 2026
N/A· v4
7.1 HIGH· v3
N/A· v2
Improper permissions in the handler for the Custom URL Scheme in ToDesktop Builder v0.33.0 allows attackers with renderer-context access to invoke external protocol handlers without sufficient validation.
1Todesktop
1Builder
Jun 17, 2026
Jan 23, 2026
N/A· v4
9.8 CRITICAL· v3
N/A· v2
An improper certificate validation vulnerability exists in ToDesktop Builder v0.32.1 This vulnerability allows an unauthenticated, on-path attacker to spoof backend responses by exploiting insufficient certificate valida...Show more
An improper certificate validation vulnerability exists in ToDesktop Builder v0.32.1 This vulnerability allows an unauthenticated, on-path attacker to spoof backend responses by exploiting insufficient certificate validation.Show less