CVE Explorer
CVE-2026-17497
NoteGen before 0.32.0 grants the Tauri shell plugin shell:allow-execute capability for bash, python, and python3 with arbitrary arguments in the default desktop capabilities. JavaScript running in the application webview can therefore invoke plugin:shell|execute to run attacker-controlled operating system commands with the privileges of the NoteGen process. In combination with script execution in the webview (for example via chat XSS), this enables full remote code execution on the user's machin
Known exploited
Not asserted
Disputed
No
Stale source
No
Conflicts
1
Preserved source conflicts
No provider value was silently selected as the winner.
cwe · 3 assertions
{"cweId":"CWE-276","description":"CWE-276 Incorrect default permissions","lang":"en","type":"CWE"}
- cve_program_cvelist_v5cweurn:baitaphish:normalized-source-record:v2:7213081bd44bccb549a25275dbf7d2c39ad5c738aef1ee20fecb7234463ff040 · sha256:ca77682ec88c2fa4… · /containers/cna/problemTypes/2/descriptions/0
{"cweId":"CWE-78","description":"CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')","lang":"en","type":"CWE"}
- cve_program_cvelist_v5cweurn:baitaphish:normalized-source-record:v2:7213081bd44bccb549a25275dbf7d2c39ad5c738aef1ee20fecb7234463ff040 · sha256:ca77682ec88c2fa4… · /containers/cna/problemTypes/0/descriptions/0
{"cweId":"CWE-1249","description":"CWE-1249 Application-Level admin tool with inconsistent view of underlying operating system","lang":"en","type":"CWE"}
- cve_program_cvelist_v5cweurn:baitaphish:normalized-source-record:v2:7213081bd44bccb549a25275dbf7d2c39ad5c738aef1ee20fecb7234463ff040 · sha256:ca77682ec88c2fa4… · /containers/cna/problemTypes/1/descriptions/0
Affected products and versions
1 source assertion{"collectionURL":"https://github.com/codexu/note-gen","defaultStatus":"unaffected","packageName":"note-gen","product":"NoteGen","programFiles":["src-tauri/capabilities/default.json","src-tauri/capabilities/desktop.json"],"repo":"git://github.com/codexu/note-gen","vendor":"codexu","versions":[{"lessThan":"0.32.0","status":"affected","version":"0","versionType":"semver"}]}
- cve_program_cvelist_v5affectedurn:baitaphish:normalized-source-record:v2:7213081bd44bccb549a25275dbf7d2c39ad5c738aef1ee20fecb7234463ff040 · sha256:ca77682ec88c2fa4… · /containers/cna/affected/0
Provider-owned CVSS observations
1 source assertion{"metric":{"attackComplexity":"HIGH","attackVector":"NETWORK","availabilityImpact":"HIGH","baseScore":8.3,"baseSeverity":"HIGH","confidentialityImpact":"HIGH","integrityImpact":"HIGH","privilegesRequired":"NONE","scope":"CHANGED","userInteraction":"REQUIRED","vectorString":"CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H","version":"3.1"},"metric_type":"cvssV3_1"}
- cve_program_cvelist_v5cvssurn:baitaphish:normalized-source-record:v2:7213081bd44bccb549a25275dbf7d2c39ad5c738aef1ee20fecb7234463ff040 · sha256:ca77682ec88c2fa4… · /containers/cna/metrics/0/cvssV3_1
CWE assertions
3 source assertions{"cweId":"CWE-276","description":"CWE-276 Incorrect default permissions","lang":"en","type":"CWE"}
- cve_program_cvelist_v5cweurn:baitaphish:normalized-source-record:v2:7213081bd44bccb549a25275dbf7d2c39ad5c738aef1ee20fecb7234463ff040 · sha256:ca77682ec88c2fa4… · /containers/cna/problemTypes/2/descriptions/0
{"cweId":"CWE-78","description":"CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')","lang":"en","type":"CWE"}
- cve_program_cvelist_v5cweurn:baitaphish:normalized-source-record:v2:7213081bd44bccb549a25275dbf7d2c39ad5c738aef1ee20fecb7234463ff040 · sha256:ca77682ec88c2fa4… · /containers/cna/problemTypes/0/descriptions/0
{"cweId":"CWE-1249","description":"CWE-1249 Application-Level admin tool with inconsistent view of underlying operating system","lang":"en","type":"CWE"}
- cve_program_cvelist_v5cweurn:baitaphish:normalized-source-record:v2:7213081bd44bccb549a25275dbf7d2c39ad5c738aef1ee20fecb7234463ff040 · sha256:ca77682ec88c2fa4… · /containers/cna/problemTypes/1/descriptions/0
Source references
3 source assertions{"name":"NoteGen repository","tags":["product"],"url":"https://github.com/codexu/note-gen"}
- cve_program_cvelist_v5referenceurn:baitaphish:normalized-source-record:v2:7213081bd44bccb549a25275dbf7d2c39ad5c738aef1ee20fecb7234463ff040 · sha256:ca77682ec88c2fa4… · /containers/cna/references/2
{"name":"Fix: remove unrestricted shell execute for bash/python; harden skill script execution","tags":["patch"],"url":"https://github.com/codexu/note-gen/commit/00064a4a8ec4177d51094ffb3e15bf0758009c1f"}
- cve_program_cvelist_v5referenceurn:baitaphish:normalized-source-record:v2:7213081bd44bccb549a25275dbf7d2c39ad5c738aef1ee20fecb7234463ff040 · sha256:ca77682ec88c2fa4… · /containers/cna/references/0
{"name":"NoteGen v0.32.0 release","tags":["vendor-advisory"],"url":"https://github.com/codexu/note-gen/releases/tag/note-gen-v0.32.0"}
- cve_program_cvelist_v5referenceurn:baitaphish:normalized-source-record:v2:7213081bd44bccb549a25275dbf7d2c39ad5c738aef1ee20fecb7234463ff040 · sha256:ca77682ec88c2fa4… · /containers/cna/references/1
Attribution and limitations
- CVE Program CVEList V5: Reproduce the MITRE copyright designation and CVE license in copies. Source →
Provider severity values are preserved separately. Baitaphish does not convert them into a risk rating, infer affected products, or treat EPSS as observed exploitation.