Electerm Arbitrary Local Code Execution Vulnerability

Vulnerability

A vulnerability allowing arbitrary local code execution has been identified in Electerm versions 3.0.6 prior to 3.8.15. This issue arises from the application's handling of deep links, command-line options, and shortcuts, which can be exploited by clicking a crafted Electerm link or opening a shortcut that launches Electerm with attacker-controlled options.

Impact

Exploitation of this vulnerability allows for arbitrary local code execution on the affected system.

Remediation

Users can update to Electerm version 3.8.15 or later, where this vulnerability has been patched. Instructions for downloading the latest version are available on the Electerm GitHub Releases page.

Added: May 8, 2026, 4:22 AM
Updated: May 8, 2026, 4:22 AM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
7.5
exploitability
4.9
remediation
8.3
relevance
7.8
threat
3.2
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.