CVE-2023-27035

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
01/05/2023
Last modified:
30/01/2025

Description

An issue discovered in Obsidian Canvas 1.1.9 allows remote attackers to send desktop notifications, record user audio and other unspecified impacts via embedded website on the canvas page.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:obsidian:obsidian:1.1.9:*:*:*:*:*:*:*