An open index of dependabot pull requests across open source projects.

electron

Ecosystem:
npm
Package URL:
pkg:npm/electron
Total PRs:
12,199 Dependabot PRs
Latest PR:
about 8 hours ago
Unique Repositories:
3,503 repositories
Unique Repos (30 days):
230 repositories
Security Advisories
Electron: Renderer command-line switch injection via undocumented commandLineSwitches webPreference
GHSA-9wfr-w7mm-pc7f CVE-2026-34769 HIGH published about 2 months ago • updated 7 days ago
### Impact An undocumented `commandLineSwitches` webPreference allowed arbitrary switches to be appended to the renderer process command line. Apps...
Electron: nodeIntegrationInWorker not correctly scoped in shared renderer processes
GHSA-xwr5-m59h-vwqr CVE-2026-34775 MODERATE published about 2 months ago • updated 4 days ago
### Impact The `nodeIntegrationInWorker` webPreference was not correctly scoped in all configurations. In certain process-sharing scenarios, worker...
Context isolation bypass via Promise in Electron
GHSA-6vrv-94jv-crrg CVE-2020-15096 LOW published almost 6 years ago • updated about 1 hour ago
### Impact Apps using `contextIsolation` are affected. This is a context isolation bypass, meaning that code running in the main world context in ...
Electron Vulnerable to Code Execution by Re-Enabling Node.js Integration
GHSA-8xwg-wv7v-4vqp CVE-2018-1000136 HIGH published about 8 years ago • updated about 1 month ago
A vulnerability has been discovered which allows Node.js integration to be re-enabled in some Electron applications that disable it. For the appli...
IPC messages delivered to the wrong frame in Electron
GHSA-hvf8-h2qh-37m9 CVE-2020-26272 MODERATE published over 5 years ago • updated about 1 hour ago
### Impact IPC messages sent from the main process to a subframe in the renderer process, through `webContents.sendToFrame`, `event.reply` or when ...
Recent PRs
Package Details
Name: electron
Ecosystem: npm
PURL Type: npm
Package URL: pkg:npm/electron
JSON API: View JSON
Security Advisories

47

Active advisories
CRITICAL 2
HIGH 18
MODERATE 19
LOW 8
View All npm Advisories
Package Information
Description:

Build cross platform desktop apps with JavaScript, HTML, and CSS

Repository: https://github.com/electron/electron
Homepage: https://github.com/electron/electron
Latest Release: 33.2.1
over 1 year ago
Dependent Repos: 93,246
Dependent Packages: 5,167
Downloads: 3,520,591
Ranking: Top 0.1097% by dependent repos Top 0.171% by downloads Top 0.0183% by dependent pkgs
PR Status
Open 4,694 (38.5%)
Merged 975 (8.0%)
Closed 5,725 (46.9%)
PR Types
Removal 3 (0.0%)
Minor 2,082 (17.1%)
Major 8,315 (68.2%)
Patch 985 (8.1%)