Obsidian 0.11.10

CPE Details

Obsidian 0.11.10
0.11.10
2022-02-10
14h09 +00:00
2022-02-11
21h40 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:obsidian:obsidian:0.11.10:*:*:*:*:*:*:*

Informations

Vendor

obsidian

Product

obsidian

Version

0.11.10

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2023-2110 2023-08-19 05h31 +00:00 Improper path handling in Obsidian desktop before 1.2.8 on Windows, Linux and macOS allows a crafted webpage to access local files and exfiltrate them to remote web servers via "app://local/". This vulnerability can be exploited if a user opens a malicious markdown file in Obsidian, or copies text from a malicious webpage and paste it into Obsidian.
8.2
High
CVE-2023-33244 2023-05-20 00h00 +00:00 Obsidian before 1.2.2 allows calls to unintended APIs (for microphone access, camera access, and desktop notification) via an embedded web page.
8.2
High
CVE-2021-38148 2021-08-07 00h28 +00:00 Obsidian before 0.12.12 does not require user confirmation for non-http/https URLs.
9.8
Critical