CVE-2018-20058: Evernote

High severity, CVSS 7.5. EPSS: 1.4% chance of exploitation in the next 30 days.

In Evernote before 7.6 on macOS, there is a local file path traversal issue in attachment previewing, aka MACOSNOTE-28634.

Affected products

  • Evernote Evernote: before 7.6 (fixed in 7.6)

Published 2018-12-11. Last modified 2026-06-17.