Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qjjm-cjhw-r68m

Опубликовано: 04 фев. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 6.3

Описание

Inappropriate implementation in Extensions API in Google Chrome prior to 133.0.6943.53 allowed a remote attacker who convinced a user to engage in specific UI gestures to perform UI spoofing via a crafted Chrome Extension. (Chromium security severity: Medium)

Inappropriate implementation in Extensions API in Google Chrome prior to 133.0.6943.53 allowed a remote attacker who convinced a user to engage in specific UI gestures to perform UI spoofing via a crafted Chrome Extension. (Chromium security severity: Medium)

EPSS

Процентиль: 50%
0.00267
Низкий

6.3 Medium

CVSS3

Дефекты

CWE-451

Связанные уязвимости

CVSS3: 6.3
nvd
12 месяцев назад

Inappropriate implementation in Extensions API in Google Chrome prior to 133.0.6943.53 allowed a remote attacker who convinced a user to engage in specific UI gestures to perform UI spoofing via a crafted Chrome Extension. (Chromium security severity: Medium)

msrc
12 месяцев назад

Chromium: CVE-2025-0451 Inappropriate implementation in Extensions API

CVSS3: 6.3
debian
12 месяцев назад

Inappropriate implementation in Extensions API in Google Chrome prior ...

CVSS3: 6.3
fstec
12 месяцев назад

Уязвимость компонента Extensions API браузера Google Chrome, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

suse-cvrf
11 месяцев назад

Security update for chromium

EPSS

Процентиль: 50%
0.00267
Низкий

6.3 Medium

CVSS3

Дефекты

CWE-451