« Volver al listado

Usebruno

Usebruno Bruno: vulnerabilidades y CVE

Usebruno Bruno tiene 4 vulnerabilidades publicadas, 1 de ellas en los últimos 12 meses. 1 son críticas y 0 figuran en el catálogo de explotación activa de CISA.

CVE4
Últimos 12 meses1
Críticas1
Explotadas activamente0

Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología

Últimas vulnerabilidades

CVESeveridadEPSSExplotación activaPublicadaDescripción
CVE-2026-34841Crítica (9.8)0.32%—6 abr 2026
Bruno is an open source IDE for exploring and testing APIs. Prior to 3.2.1, Bruno was affected by a supply chain attack involving compromised versions of the axios npm package, which introduced a hidden dependency…
CVE-2025-30354Alta (8.7)0.37%—1 abr 2025
Bruno is an open source IDE for exploring and testing APIs. A bug in the assertion runtime caused assert expressions to run in Developer Mode, even if Safe Mode was selected. The bug resulted in the sandbox settings to…
CVE-2025-30210Alta (8.7)0.35%—1 abr 2025
Bruno is an open source IDE for exploring and testing APIs. Prior to 1.39.1, the custom tool-tip components which internally use react-tooltip were setting the content (in this case the Environment name) as raw HTML…
CVE-2024-48463Media (6.5)0.64%—4 nov 2024
Bruno before 1.29.1 uses Electron shell.openExternal without validation (of http or https) for opening windows within the Markdown docs viewer.

🎯 Cómo se explota (técnicas ATT&CK)

  1. T1203 Exploitation for Client Execution2
  2. T1059 Command and Scripting Interpreter1
  3. T1059.007 JavaScript1
  4. T1195 Supply Chain Compromise1
  5. T1195.002 Compromise Software Supply Chain1

Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.