A remote code execution vulnerability has been discovered affecting apps with the ability to open nested child windows on Electron versions (3.0.0-beta.6, 2.0.7, 1.8.7, and 1.7.15). This vulnerability has been assigned the CVE identifier CVE-2018-15685. Affected Platforms You are impacted if: You embed any remote user content, even in a sandbox You accept user input with any XSS vulnerabilities D