Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-c4g9-q4rc-577f

Опубликовано: 19 авг. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 4.3

Описание

A crafted URL using a blob: URI could have hidden the true origin of the page, resulting in a potential spoofing attack. Note: This issue only affected Android operating systems. Other operating systems are unaffected. This vulnerability affects Firefox < 141.

A crafted URL using a blob: URI could have hidden the true origin of the page, resulting in a potential spoofing attack. Note: This issue only affected Android operating systems. Other operating systems are unaffected. This vulnerability affects Firefox < 141.

EPSS

Процентиль: 12%
0.00042
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-451

Связанные уязвимости

CVSS3: 4.3
nvd
3 месяца назад

A crafted URL using a blob: URI could have hidden the true origin of the page, resulting in a potential spoofing attack. *Note: This issue only affected Android operating systems. Other operating systems are unaffected.* This vulnerability affects Firefox < 141.

CVSS3: 4.3
debian
3 месяца назад

A crafted URL using a blob: URI could have hidden the true origin of t ...

CVSS3: 4.3
fstec
4 месяца назад

Уязвимость браузеров Mozilla Firefox, связанная с ложным представлением критической информации пользовательским интерфейсом, позволяющая нарушителю оказать воздействие на целостность защищаемой информации

EPSS

Процентиль: 12%
0.00042
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-451