Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-49378

Опубликовано: 25 окт. 2024
Источник: nvd
CVSS3: 6.1
EPSS Низкий

Описание

smartUp, a web browser mouse gestures extension, has a universal cross-site scripting issue in the Edge and Firefox versions of smartUp 7.2.622.1170. The vulnerability allows another extension to execute arbitrary code in the context of the user’s tab. As of time of publication, no known patches exist.

EPSS

Процентиль: 52%
0.00295
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-79

EPSS

Процентиль: 52%
0.00295
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-79