GHSA-cc8h-gpwh-gq9rMedium

Reflected XSS in Netron versions <=9.1.2 on desktop application through unsanitized node names...

Published
August 27, 2026
Last Modified
August 27, 2026

🔗 CVE IDs covered (1)

📋 Description

Reflected XSS in Netron versions <=9.1.2 on desktop application through unsanitized node names allows an attacker to hide certain nodes, perform port scanning or abuse a Chrome n-day to achieve Remote Code Execution.

🔗 References (4)