Skip to main content

Vendor/product archive

zulip / zulip_desktop CVEs

Beta · best-effort

2 CVEs tagged to zulip / zulip_desktop1 Critical, 0 High, 1 Medium, 0 Low, 0 Unrated.

CVE-2020-10858

Published Feb 5, 2021

Zulip Desktop before 5.0.0 allows attackers to perform recording via the webcam and microphone due to a missing permission request handler.

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-10857

Published Feb 5, 2021

Zulip Desktop before 5.0.0 improperly uses shell.openExternal and shell.openItem with untrusted content, leading to remote code execution.

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort
Showing 1-2 of 2 CVEsPage 1 of 1