An issue in Weave Weave Desktop v.7.78.10 allows a local attacker to execute arbitrary code via a crafted script to the nwjs framework component.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Tue, 17 Jun 2025 21:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Weave
Weave weave Desktop |
|
| CPEs | cpe:2.3:a:weave:weave_desktop:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Weave
Weave weave Desktop |
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-01T23:44:09.588Z
Reserved: 2024-02-07T00:00:00
Link: CVE-2024-25545
Updated: 2024-08-01T23:44:09.588Z
Status : Analyzed
Published: 2024-04-12T13:15:15.220
Modified: 2025-06-17T21:01:04.893
Link: CVE-2024-25545
No data.
OpenCVE Enrichment
No data.
Weaknesses