Obsidian 1.1.9

CPE Details

Obsidian 1.1.9
1.1.9
2023-05-05
16h09 +00:00
2023-08-11
21h44 +00:00
Alerte pour un CPE
Restez informé de toutes modifications pour un CPE spécifique.
Gestion des notifications

CPE Name: cpe:2.3:a:obsidian:obsidian:1.1.9:*:*:*:*:*:*:*

Informations

Vendor

obsidian

Product

obsidian

Version

1.1.9

Related CVE

Open and find in CVE List

CVE ID Publié Description Score Gravité
CVE-2023-2110 2023-08-19 05h31 +00:00 Improper path handling in Obsidian desktop before 1.2.8 on Windows, Linux and macOS allows a crafted webpage to access local files and exfiltrate them to remote web servers via "app://local/". This vulnerability can be exploited if a user opens a malicious markdown file in Obsidian, or copies text from a malicious webpage and paste it into Obsidian.
8.2
Haute
CVE-2023-33244 2023-05-20 00h00 +00:00 Obsidian before 1.2.2 allows calls to unintended APIs (for microphone access, camera access, and desktop notification) via an embedded web page.
8.2
Haute
CVE-2023-27035 2023-05-01 00h00 +00:00 An issue discovered in Obsidian Canvas 1.1.9 allows remote attackers to send desktop notifications, record user audio and other unspecified impacts via embedded website on the canvas page.
7.5
Haute