CVE-2023-31874: Yank-Note Yank Note

High severity, CVSS 8.8. EPSS: 4.9% chance of exploitation in the next 30 days.

Yank Note (YN) 3.52.1 allows execution of arbitrary code when a crafted file is opened, e.g., via nodeRequire('child_process').

Affected products

Published 2023-05-29. Last modified 2026-06-17.