CVE-2025-55204P2CRITICALCVSS 9.6fixed in 2.3.02026-01-05
CVE-2025-55204 [CRITICAL] CWE-94 CVE-2025-55204: muffon is a cross-platform music streaming client for desktop. Versions prior to 2.3.0 have a one-cl
muffon is a cross-platform music streaming client for desktop. Versions prior to 2.3.0 have a one-click Remote Code Execution (RCE) vulnerability in. An attacker can exploit this issue by embedding a specially crafted `muffon://` link on any website they control. When a victim visits the site or clicks the link, the browser triggers Muffon’s custom
nvd