CVE-2026-17497 – NoteGen arbitrary OS command execution via Tauri shell:allow-execute for bash/python
CVE ID :CVE-2026-17497 Published : July 26, 2026, 3:16 p.m. | 2 hours, 59 minutes ago Description :NoteGen before 0.32.0 grants the Tauri shell plugin shell:allow-execute capability for bash, python, and python3 with arbitrary arguments in the default desktop capabilities. JavaScript running…
