Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-h3v4-38wv-mgjx

Опубликовано: 12 июн. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 4.3

Описание

The web application is vulnerable to clickjacking attacks. The site can be embedded into another frame, allowing an attacker to trick a user into clicking on something different from what the user perceives. This could potentially reveal confidential information or allow others to take control of their computer while clicking on seemingly innocuous objects.

The web application is vulnerable to clickjacking attacks. The site can be embedded into another frame, allowing an attacker to trick a user into clicking on something different from what the user perceives. This could potentially reveal confidential information or allow others to take control of their computer while clicking on seemingly innocuous objects.

EPSS

Процентиль: 19%
0.00061
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-1021

Связанные уязвимости

CVSS3: 4.3
nvd
8 месяцев назад

The web application is vulnerable to clickjacking attacks. The site can be embedded into another frame, allowing an attacker to trick a user into clicking on something different from what the user perceives. This could potentially reveal confidential information or allow others to take control of their computer while clicking on seemingly innocuous objects.

EPSS

Процентиль: 19%
0.00061
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-1021