An open index of dependabot pull requests across open source projects.

electron

Ecosystem:
npm
Package URL:
pkg:npm/electron
Total PRs:
12,204 Dependabot PRs
Latest PR:
about 4 hours ago
Unique Repositories:
3,505 repositories
Unique Repos (30 days):
228 repositories
Security Advisories
Electron: Renderer command-line switch injection via undocumented commandLineSwitches webPreference
GHSA-9wfr-w7mm-pc7f CVE-2026-34769 HIGH published about 2 months ago • updated 8 days ago
### Impact An undocumented `commandLineSwitches` webPreference allowed arbitrary switches to be appended to the renderer process command line. Apps...
Electron: nodeIntegrationInWorker not correctly scoped in shared renderer processes
GHSA-xwr5-m59h-vwqr CVE-2026-34775 MODERATE published about 2 months ago • updated 5 days ago
### Impact The `nodeIntegrationInWorker` webPreference was not correctly scoped in all configurations. In certain process-sharing scenarios, worker...
Electron Vulnerable to Code Execution by Re-Enabling Node.js Integration
GHSA-8xwg-wv7v-4vqp CVE-2018-1000136 HIGH published about 8 years ago • updated about 1 month ago
A vulnerability has been discovered which allows Node.js integration to be re-enabled in some Electron applications that disable it. For the appli...
electron ASAR Integrity bypass by just modifying the content
GHSA-xw5q-g62x-2qjc CVE-2024-46992 HIGH published 11 months ago • updated 18 days ago
electron's ASAR Integrity can be bypass by modifying the content. ### Impact This only impacts apps that have the `embeddedAsarIntegrityValidation...
Exfiltration of hashed SMB credentials on Windows via file:// redirect
GHSA-p2jh-44qj-pf2v CVE-2022-36077 MODERATE published over 3 years ago • updated 5 days ago
### Impact When following a redirect, Electron delays a check for redirecting to file:// URLs from other schemes. The contents of the file is not a...
Recent PRs (filtered by: Patch PRs )
Package Details
Name: electron
Ecosystem: npm
PURL Type: npm
Package URL: pkg:npm/electron
JSON API: View JSON
Security Advisories

46

Active advisories
CRITICAL 2
HIGH 17
MODERATE 19
LOW 8
View All npm Advisories
Package Information
Description:

Build cross platform desktop apps with JavaScript, HTML, and CSS

Repository: https://github.com/electron/electron
Homepage: https://github.com/electron/electron
Latest Release: 33.2.1
over 1 year ago
Dependent Repos: 93,246
Dependent Packages: 5,167
Downloads: 3,520,591
Ranking: Top 0.1097% by dependent repos Top 0.171% by downloads Top 0.0183% by dependent pkgs
PR Status
Open 4,697 (38.5%)
Merged 975 (8.0%)
Closed 5,727 (46.9%)
PR Types
Major 8,318 (68.2%)
Minor 2,084 (17.1%)
Patch 985 (8.1%)
Removal 3 (0.0%)