Description
Based on details posted by the ElectronJS team; A remote code execution vulnerability has been discovered in Google Chromium that affects all recent versions of Electron. Any Electron app that accesses remote content is vulnerable to this exploit, regardless of whether the [sandbox option](https://electron.atom.io/docs/api/sandbox-option) is enabled.
Remediation
References
https://electron.atom.io/blog/2017/09/27/chromium-rce-vulnerability-fix
https://nodesecurity.io/advisories/539
Related Vulnerabilities
CVE-2020-28433 Vulnerability in npm package node-latex-pdf
CVE-2021-21346 Vulnerability in maven package com.thoughtworks.xstream:xstream
CVE-2019-16574 Vulnerability in maven package com.alauda.jenkins.plugins:alauda-devops-pipeline
CVE-2020-2323 Vulnerability in maven package io.jenkins.plugins:chaos-monkey