Описание
CAI Content Credentials versions c2pa-web@0.7.0, c2pa-v0.78.2 and earlier are affected by an Improper Input Validation vulnerability that could result in an application denial-of-service. An attacker could exploit this vulnerability to crash the application, leading to a denial-of-service condition. Exploitation of this issue does not require user interaction.
Ссылки
- Vendor Advisory
Уязвимые конфигурации
Одно из
EPSS
6.2 Medium
CVSS3
Дефекты
Связанные уязвимости
CAI Content Credentials versions 0.78.2, 0.7.0 and earlier are affected by an Improper Input Validation vulnerability that could result in an application denial-of-service. An attacker could exploit this vulnerability to crash the application, leading to a denial-of-service condition. Exploitation of this issue does not require user interaction.
Уязвимость программных средств для работы с защищенными метаданными Content Authenticity JS SDK и Content Authenticity Rust SDK, связанная с недостаточной проверкой входных данных, позволяющая нарушителю вызвать отказ в обслуживании
EPSS
6.2 Medium
CVSS3