CVE-2026-104077 | Obsidian Desktop up to 1.13.x Slides data-background-iframe code injection
A vulnerability classified as problematic has been found in Obsidian Desktop up to 1.13.x. The impacted element is an unknown function of the component Slides. This manipulation of the argument data-background-iframe causes code injection.
This vulnerability is tracked as CVE-2026-104077. The attack is restricted to local execution. No exploit exists.
It is recommended to upgrade the affected component.VulDB Recent EntriesRead More