Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-p3v4-vvf3-w2hh

Опубликовано: 21 нояб. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 7.4

Описание

This vulnerability allowed a site to enter fullscreen, after a user click, without a full-screen notification (toast) appearing. Without this notification, users could potentially be misled about what site they were on if a malicious site renders a fake UI (like a fake address bar.)

This vulnerability allowed a site to enter fullscreen, after a user click, without a full-screen notification (toast) appearing. Without this notification, users could potentially be misled about what site they were on if a malicious site renders a fake UI (like a fake address bar.)

EPSS

Процентиль: 10%
0.00036
Низкий

7.4 High

CVSS3

Дефекты

CWE-1021

Связанные уязвимости

CVSS3: 7.4
nvd
3 месяца назад

This vulnerability allowed a site to enter fullscreen, after a user click, without a full-screen notification (toast) appearing. Without this notification, users could potentially be misled about what site they were on if a malicious site renders a fake UI (like a fake address bar.)

EPSS

Процентиль: 10%
0.00036
Низкий

7.4 High

CVSS3

Дефекты

CWE-1021