Electron have got multiple CVEs. Here are link to those issues: https://security.snyk.io/package/npm/electron/22.0.0 The issue is in package.json file at line no: https://github.com/electron/remote/blob/main/package.json#L22