Beveiligingsadvies

CVE-2025-51387

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2025-08-04 00:00:00
Laatst bijgewerkt 2025-08-05 13:44:34
Toegewezen door mitre
CVSS-score 9.8
Status PUBLISHED

Beschrijving

The GitKraken Desktop 10.8.0 and 11.1.0 is susceptible to code injection due to misconfigured Electron Fuses. Specifically, the following insecure settings were observed: RunAsNode is enabled and EnableNodeCliInspectArguments is not disabled. These configurations allow the application to be executed in Node.js mode, enabling attackers to pass arguments that result in arbitrary code execution.