Beakerbrowser is a peer-to-peer web browser with a focus on decentralized protocols and local-first applications, centered around its core Beaker product. The disclosed vulnerabilities concentrate on object-deserialization and prototype-pollution weaknesses, reflecting the challenges of handling untrusted data in JavaScript-heavy environments where prototype chains are manipulated. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Beakerbrowser over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2020-12079CRITICAL Beaker before 0.8.9 allows a sandbox escape, enabling system access and code execution. This occurs because Electron context isolation is not used, and therefore an attacker can co | Apr 23, 2020 | 10.0 | 31 | NO | NO |
CVE-2013-7489MEDIUM The Beaker library through 1.11.0 for Python is affected by deserialization of untrusted data, which could lead to arbitrary code execution. | Jun 26, 2020 | 6.8 | 23 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Beakerbrowser.
Media articles that mention a CVE ID that affects a product developed by Beakerbrowser — matched by CVE ID, not by vendor name.