CVE-2020-1889: WhatsApp Desktop
Critical severity, CVSS 10.0. EPSS: 4.8% chance of exploitation in the next 30 days.
A security feature bypass issue in WhatsApp Desktop versions prior to v0.3.4932 could have allowed for sandbox escape in Electron and escalation of privilege if combined with a remote code execution vulnerability inside the sandboxed renderer process.
Affected products
- WhatsApp WhatsApp Desktop: before 0.3.4932 (fixed in 0.3.4932)
Published 2020-09-03. Last modified 2026-06-17.