Vulnerability index

Browse CVEs

11 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Evernote CRITICAL 9.8
CVE-2023-50643

An issue in Evernote Evernote for MacOS v.10.68.2 allows a remote attacker to execute arbitrary code via the RunAsNode and enableNodeClilnspectArgume…

Mitigation only
Fix from $2,300 2024-01-09
Evernote HIGH 8.8
CVE-2020-17759

An issue was found in the Evernote client for Windows 10, 7, and 2008 in the protocol handler. This enables attackers for arbitrary command execution…

Mitigation only
Fix from $1,950 2021-06-24
Yinxiang Biji MEDIUM 5.4
CVE-2018-19658

The Markdown editor in YXBJ before 8.3.2 on macOS has stored XSS. This behavior may be encountered by some Evernote users; however, it is a vulnerabi…

Fix: 8.3.2+
Fix from $1,600 2020-03-02
Evernote HIGH 7.1
CVE-2013-5116

Evernote prior to 5.5.1 has insecure password change

Fix: 5.5.1+
Fix from $1,950 2020-01-31
Evernote HIGH 7.8
CVE-2019-17051

Evernote before 7.13 GA on macOS allows code execution because the com.apple.quarantine attribute is not used for attachment files, as demonstrated b…

Fix: 7.13+
Fix from $1,950 2019-09-30
Web Clipper MEDIUM 6.1
CVE-2019-12592

A universal Cross-site scripting (UXSS) vulnerability in the Evernote Web Clipper extension before 7.11.1 for Chrome allows remote attackers to run a…

Fix: 7.11.1+
Fix from $1,600 2019-06-18
Evernote HIGH 7.8
CVE-2019-10038

Evernote 7.9 on macOS allows attackers to execute arbitrary programs by embedding a reference to a local executable file such as the /Applications/Ca…

Mitigation only
Fix from $1,950 2019-05-31
Evernote MEDIUM 6.1
CVE-2018-18524

Evernote 6.15 on Windows has an incorrectly repaired stored XSS vulnerability. An attacker can use this XSS issue to inject Node.js code under Presen…

No fix yet
Fix from $1,600 2019-05-13
Evernote MEDIUM 6.1
CVE-2018-20351

The Markdown component in Evernote (Chinese) before 8.3.2 on macOS allows stored XSS, aka MAC-832.

Fix: 8.3.2+
Fix from $1,600 2018-12-22
Evernote HIGH 7.5
CVE-2018-20058

In Evernote before 7.6 on macOS, there is a local file path traversal issue in attachment previewing, aka MACOSNOTE-28634.

Fix: 7.6+
Fix from $1,950 2018-12-11
Evernote HIGH 7.8
CVE-2016-4900

Untrusted search path vulnerability in Evernote for Windows versions prior to 6.3 allows remote attackers to gain privileges via a Trojan horse DLL i…

Fix: after 6.2.1
Fix from $1,950 2017-05-22