Описание
A malicious webview could install long-lived unload handlers that re-use an incognito BrowserContext that is queued for destruction in versions of Oxide before 1.18.3.
Ссылки
- PatchThird Party Advisory
- PatchThird Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 1.18.3 (исключая)
cpe:2.3:a:oxide_project:oxide:*:*:*:*:*:*:*:*
EPSS
Процентиль: 39%
0.00178
Низкий
1.8 Low
CVSS3
7.5 High
CVSS3
5 Medium
CVSS2
Дефекты
CWE-20
Связанные уязвимости
CVSS3: 1.8
ubuntu
почти 7 лет назад
A malicious webview could install long-lived unload handlers that re-use an incognito BrowserContext that is queued for destruction in versions of Oxide before 1.18.3.
CVSS3: 7.5
github
больше 3 лет назад
A malicious webview could install long-lived unload handlers that re-use an incognito BrowserContext that is queued for destruction in versions of Oxide before 1.18.3.
EPSS
Процентиль: 39%
0.00178
Низкий
1.8 Low
CVSS3
7.5 High
CVSS3
5 Medium
CVSS2
Дефекты
CWE-20