Description
Based on details posted by the ElectronJS team; A remote code execution vulnerability has been discovered in Google Chromium that affects all recent versions of Electron. Any Electron app that accesses remote content is vulnerable to this exploit, regardless of whether the [sandbox option](https://electron.atom.io/docs/api/sandbox-option) is enabled.
Remediation
References
https://electron.atom.io/blog/2017/09/27/chromium-rce-vulnerability-fix
https://nodesecurity.io/advisories/539
Related Vulnerabilities
CVE-2020-7782 Vulnerability in npm package spritesheet-js
CVE-2016-8739 Vulnerability in maven package org.apache.cxf:cxf-rt-rs-extension-providers
CVE-2018-1321 Vulnerability in maven package org.apache.syncope:syncope-core
CVE-2016-10637 Vulnerability in npm package haxe-dev
CVE-2020-7961 Vulnerability in maven package com.liferay.portal:com.liferay.portal.impl