RubinderS/DittoPlusPlus

Electron.js Version Upgrade

Opened this issue · 0 comments

masood commented

The Ditto++ Desktop Application uses an older version of Electron. The framework recommends that updated versions of the framework be used to take advantage of secure defaults and security fixes. [Link]

Additionally, the app uses insecure web preferences, which can be turned off by default when upgraded to a newer version of Electron.js

Platform(s) Affected:
MacOS, Windows

Mir Masood Ali, PhD student, University of Illinois at Chicago
Mohammad Ghasemisharif, PhD Candidate, University of Illinois at Chicago
Chris Kanich, Associate Professor, University of Illinois at Chicago
Jason Polakis, Associate Professor, University of Illinois at Chicago