Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xfj9-6vm8-7xwg

Опубликовано: 04 дек. 2024
Источник: github
Github: Не прошло ревью
CVSS4: 8.2
CVSS3: 8.1

Описание

** INITIAL LIMITED RELEASE **

User Interface (UI) Misrepresentation of Critical Information vulnerability in [WITHHELD] allows Content Spoofing. The SaaS AI assistant ignores hidden content that is rendered after signing, misleading the user. This issue affects [WITHHELD]: through 2024-12-04.

** INITIAL LIMITED RELEASE **

User Interface (UI) Misrepresentation of Critical Information vulnerability in [WITHHELD] allows Content Spoofing. The SaaS AI assistant ignores hidden content that is rendered after signing, misleading the user. This issue affects [WITHHELD]: through 2024-12-04.

EPSS

Процентиль: 28%
0.00099
Низкий

8.2 High

CVSS4

8.1 High

CVSS3

Дефекты

CWE-451

Связанные уязвимости

CVSS3: 8.1
nvd
около 1 года назад

User Interface (UI) Misrepresentation of Critical Information vulnerability in DocuSign allows Content Spoofing. The SaaS AI assistant ignores hidden content that is rendered after signing, misleading the user. For reference see: CVE-2024-52276 This issue affects DocuSign: through 2024-12-04.

EPSS

Процентиль: 28%
0.00099
Низкий

8.2 High

CVSS4

8.1 High

CVSS3

Дефекты

CWE-451