Loading product vulnerabilities…
Total
2
Critical
1
High
0
Medium
1
CISA KEV
0
Zulip Desktop before 5.0.0 allows attackers to perform recording via the webcam and microphone due to a missing permission request handler.
Zulip Desktop before 5.0.0 improperly uses shell.openExternal and shell.openItem with untrusted content, leading to remote code execution.