CVE-2026-102674: high-severity vulnerability in electron
Electron: Windows opened from a sandboxed top-level document do not inherit its sandbox restrictions
Published
21Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackcvss 8.2epss 0.3%
exploitation probability
0.3%top 83% of all CVEs
observed exploitation
nono source reports it
Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS. Prior to 41.10.6, 42.9.2, 43.4.1, and 44.0.0-beta.5, windows opened from a sandboxed top-level document did not inherit that document's active HTML sandbox restrictions. Untrusted content in a sandboxed top-level document that was permitted to open popups could therefore create a window with the Electron application's full origin instead of the restricted origin intended by the sandbox. Applications that deny such popups with setWindowOpenHandler are not affected. This issue is fixed in versions 41.10.6, 42.9.2, 43.4.1, and 44.0.0-beta.5.
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N
Affected products
electron · electronRelated CVEs — electron
In the same product, most dangerous first.
CVE-2020-26272MEDIUMElectron vulnerable to ID collision when routing IPC messages to renderers containing OOPIFsEPSS 1.7%CVE-2020-15174HIGHUnpreventable top-level navigation in ElectronEPSS 1.3%CVE-2020-4075MEDIUMArbitrary file read via window-open IPC in ElectronEPSS 1.2%CVE-2021-39184MEDIUMSandboxed renderers can obtain thumbnails of arbitrary files through the nativeImage APIEPSS 1.1%CVE-2022-29247LOWExposure of Resource to Wrong Sphere in ElectronEPSS 1.0%CVE-2020-4077HIGHContext isolation bypass via contextBridge in ElectronEPSS 1.0%
References
https://github.com/electron/electron/commit/29fc130569f970e91e355383821a4af0f25724a2https://github.com/electron/electron/commit/3ecf3e74f4be6e2360644679b0b4698742be0e1dhttps://github.com/electron/electron/commit/6594d5a5b074cf501da084dc7908d3df0d68a886https://github.com/electron/electron/commit/e9c4d3cbe912e18d7c63af78e63e98ae7a48cd3ahttps://github.com/electron/electron/releases/tag/v41.10.6https://github.com/electron/electron/releases/tag/v42.9.2https://github.com/electron/electron/releases/tag/v43.4.1https://github.com/electron/electron/releases/tag/v44.0.0-beta.5https://github.com/electron/electron/security/advisories/GHSA-gr2m-v5gq-v685