Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qjjm-cjhw-r68m

Опубликовано: 04 фев. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 6.3

Описание

Inappropriate implementation in Extensions API in Google Chrome prior to 133.0.6943.53 allowed a remote attacker who convinced a user to engage in specific UI gestures to perform UI spoofing via a crafted Chrome Extension. (Chromium security severity: Medium)

Inappropriate implementation in Extensions API in Google Chrome prior to 133.0.6943.53 allowed a remote attacker who convinced a user to engage in specific UI gestures to perform UI spoofing via a crafted Chrome Extension. (Chromium security severity: Medium)

EPSS

Процентиль: 56%
0.00346
Низкий

6.3 Medium

CVSS3

Дефекты

CWE-451

Связанные уязвимости

CVSS3: 6.3
nvd
5 месяцев назад

Inappropriate implementation in Extensions API in Google Chrome prior to 133.0.6943.53 allowed a remote attacker who convinced a user to engage in specific UI gestures to perform UI spoofing via a crafted Chrome Extension. (Chromium security severity: Medium)

msrc
4 месяца назад

Chromium: CVE-2025-0451 Inappropriate implementation in Extensions API

CVSS3: 6.3
debian
5 месяцев назад

Inappropriate implementation in Extensions API in Google Chrome prior ...

CVSS3: 6.3
fstec
5 месяцев назад

Уязвимость компонента Extensions API браузера Google Chrome, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

suse-cvrf
4 месяца назад

Security update for chromium

EPSS

Процентиль: 56%
0.00346
Низкий

6.3 Medium

CVSS3

Дефекты

CWE-451