CVE-2014-9733: Nwjs Nw.js

Critical severity, CVSS 9.8. EPSS: 1.4% chance of exploitation in the next 30 days.

nw.js before 0.11.5 can simulate user input events in a normal frame, which allows remote attackers to have unspecified impact via unknown vectors.

Affected products

  • Nwjs Nw.js: up to and including 0.11.4

Published 2017-10-17. Last modified 2026-06-17.