Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8j5m-6wvx-8fqm

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

A service worker can send the activate event on itself periodically which allows it to run perpetually, allowing it to monitor activity by users. Affects all versions prior to Firefox 60.

A service worker can send the activate event on itself periodically which allows it to run perpetually, allowing it to monitor activity by users. Affects all versions prior to Firefox 60.

EPSS

Процентиль: 62%
0.00432
Низкий

7.5 High

CVSS3

Дефекты

CWE-772

Связанные уязвимости

CVSS3: 7.5
ubuntu
почти 7 лет назад

A service worker can send the activate event on itself periodically which allows it to run perpetually, allowing it to monitor activity by users. Affects all versions prior to Firefox 60.

CVSS3: 4.3
redhat
больше 7 лет назад

A service worker can send the activate event on itself periodically which allows it to run perpetually, allowing it to monitor activity by users. Affects all versions prior to Firefox 60.

CVSS3: 7.5
nvd
почти 7 лет назад

A service worker can send the activate event on itself periodically which allows it to run perpetually, allowing it to monitor activity by users. Affects all versions prior to Firefox 60.

CVSS3: 7.5
debian
почти 7 лет назад

A service worker can send the activate event on itself periodically wh ...

CVSS3: 7.5
fstec
почти 8 лет назад

Уязвимость скрипта ServiceWorker браузера Google Chrome, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

EPSS

Процентиль: 62%
0.00432
Низкий

7.5 High

CVSS3

Дефекты

CWE-772