nw.js before 0.11.5 can simulate user input events in a normal frame, which allows remote attackers to have unspecified impact via unknown vectors.
CVE Status: Modified
No CVSS data available
Exploit-db Github