cbcvebase.

Electerm Project Electerm vulnerabilities

10 known vulnerabilities affecting electerm_project/electerm.

Total CVEs
10
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL6HIGH3MEDIUM1

Vulnerabilities

Page 1 of 1
CVE-2026-41500P2CRITICALCVSS 9.8fixed in 3.3.82026-05-08
CVE-2026-41500 [CRITICAL] CWE-77 CVE-2026-41500: electerm is an open-sourced terminal/ssh/sftp/telnet/serialport/RDP/VNC/Spice/ftp client. Prior to v electerm is an open-sourced terminal/ssh/sftp/telnet/serialport/RDP/VNC/Spice/ftp client. Prior to version 3.3.8, a command injection vulnerability exists in github.com/elcterm/electerm/npm/install.js:150. The runMac() function appends attacker-controlled remote releaseInfo.name directly into an exec("open ...") command without validation. This iss
nvd
CVE-2026-41501P2CRITICALCVSS 9.8fixed in 3.3.82026-05-08
CVE-2026-41501 [CRITICAL] CWE-77 CVE-2026-41501: electerm is an open-sourced terminal/ssh/sftp/telnet/serialport/RDP/VNC/Spice/ftp client. Prior to v electerm is an open-sourced terminal/ssh/sftp/telnet/serialport/RDP/VNC/Spice/ftp client. Prior to version 3.3.8, a command injection vulnerability exists in github.com/elcterm/electerm/npm/install.js:130. The runLinux() function appends attacker-controlled remote version strings directly into an exec("rm -rf ...") command without validation. This
nvd
CVE-2026-43944P2CRITICALCVSS 9.6≥ 3.0.6, < 3.8.152026-05-08
CVE-2026-43944 [CRITICAL] CWE-20 CVE-2026-43944: electerm is an open-sourced terminal/ssh/sftp/telnet/serialport/RDP/VNC/Spice/ftp client. From versi electerm is an open-sourced terminal/ssh/sftp/telnet/serialport/RDP/VNC/Spice/ftp client. From versions 3.0.6 to before 3.8.15, electerm is vulnerable to arbitrary local code execution via deep links, CLI --opts, or crafted shortcuts. Exploit requires clicking a crafted electerm://... link or opening a crafted shortcut/command that launches electer
nvd
CVE-2026-43941P3CRITICALCVSS 9.6≤ 3.8.152026-05-08
CVE-2026-43941 [CRITICAL] CWE-88 CVE-2026-43941: electerm is an open-sourced terminal/ssh/sftp/telnet/serialport/RDP/VNC/Spice/ftp client. In version electerm is an open-sourced terminal/ssh/sftp/telnet/serialport/RDP/VNC/Spice/ftp client. In versions 3.8.15 and prior, Electerm's terminal hyperlink handler passes any URL clicked in the terminal directly to shell.openExternal without any protocol validation. An attacker who controls terminal output (e.g., via a malicious SSH server, compromised r
nvd
CVE-2026-45787P3CRITICALCVSS 9.1fixed in 3.9.52026-05-28
CVE-2026-45787 [CRITICAL] CWE-326 CVE-2026-45787: electerm is an open-sourced terminal/ssh/sftp/telnet/serialport/RDP/VNC/Spice/ftp client. Prior to 3 electerm is an open-sourced terminal/ssh/sftp/telnet/serialport/RDP/VNC/Spice/ftp client. Prior to 3.9.5, deterministic AES-192-CBC with a fixed zero IV, constant KDF salt, and no MAC leads to confidentiality and integrity failures for synced bookmark/profile data. Attackers can crack common passwords across installs and perform undetected ciphert
nvd
CVE-2020-23256P3CRITICALCVSS 9.8v1.3.222023-01-20
CVE-2020-23256 [CRITICAL] CWE-306 CVE-2020-23256: An issue was discovered in Electerm 1.3.22, allows attackers to execute arbitrary code via unverifie An issue was discovered in Electerm 1.3.22, allows attackers to execute arbitrary code via unverified request to electerms service.
ghsanvdosv
CVE-2026-43940P3HIGHCVSS 8.4fixed in 3.7.162026-05-08
CVE-2026-43940 [HIGH] CWE-22 CVE-2026-43940: electerm is an open-sourced terminal/ssh/sftp/telnet/serialport/RDP/VNC/Spice/ftp client. Prior to v electerm is an open-sourced terminal/ssh/sftp/telnet/serialport/RDP/VNC/Spice/ftp client. Prior to version 3.7.16, the runWidget function in src/app/widgets/load-widget.js constructs a file path by directly concatenating user‑supplied widget identifiers without any sanitisation. Because runWidget is exposed to the renderer process via an asynchronous I
nvd
CVE-2026-43943P3HIGHCVSS 7.8fixed in 3.7.92026-05-08
CVE-2026-43943 [HIGH] CWE-78 CVE-2026-43943: electerm is an open-sourced terminal/ssh/sftp/telnet/serialport/RDP/VNC/Spice/ftp client. Prior to v electerm is an open-sourced terminal/ssh/sftp/telnet/serialport/RDP/VNC/Spice/ftp client. Prior to version 3.7.9, a code execution (RCE) vulnerability exists in electerm's SFTP open with system editor or "Edit with custom editor" feature. When a user opts to edit a file using open with system editor or open with a custom editor, the filename is passed
nvd
CVE-2026-45353P3HIGHCVSS 7.8≥ 3.0.6, < 3.9.02026-05-28
CVE-2026-45353 [HIGH] CWE-94 CVE-2026-45353: electerm is an open-sourced terminal/ssh/sftp/telnet/serialport/RDP/VNC/Spice/ftp client. From 3.0.6 electerm is an open-sourced terminal/ssh/sftp/telnet/serialport/RDP/VNC/Spice/ftp client. From 3.0.6 to 3.8.8, This vulnerability is fixed in 3.9.0.
nvd
CVE-2026-43942P4MEDIUMCVSS 5.5≤ 3.8.152026-05-08
CVE-2026-43942 [MEDIUM] CWE-200 CVE-2026-43942: electerm is an open-sourced terminal/ssh/sftp/telnet/serialport/RDP/VNC/Spice/ftp client. In version electerm is an open-sourced terminal/ssh/sftp/telnet/serialport/RDP/VNC/Spice/ftp client. In versions 3.8.15 and prior, the getConstants() IPC handler in src/app/lib/ipc-sync.js serialises the entire process.env object and sends it to the renderer. The data is stored as window.pre.env and is accessible from any JavaScript running in the renderer (e.
nvd