Логотип exploitDog
bind:CVE-2022-24072
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-24072

Количество 2

Количество 2

nvd логотип

CVE-2022-24072

почти 4 года назад

The devtools API in Whale browser before 3.12.129.18 allowed extension developers to inject arbitrary JavaScript into the extension store web page via devtools.inspectedWindow, leading to extensions downloading and uploading when users open the developer tool.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-j72f-vfwh-m8f9

почти 4 года назад

The devtools API in Whale browser before 3.12.129.18 allowed extension developers to inject arbitrary JavaScript into the extension store web page via devtools.inspectedWindow, leading to extensions downloading and uploading when users open the developer tool.

CVSS3: 6.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-24072

The devtools API in Whale browser before 3.12.129.18 allowed extension developers to inject arbitrary JavaScript into the extension store web page via devtools.inspectedWindow, leading to extensions downloading and uploading when users open the developer tool.

CVSS3: 6.1
0%
Низкий
почти 4 года назад
github логотип
GHSA-j72f-vfwh-m8f9

The devtools API in Whale browser before 3.12.129.18 allowed extension developers to inject arbitrary JavaScript into the extension store web page via devtools.inspectedWindow, leading to extensions downloading and uploading when users open the developer tool.

CVSS3: 6.1
0%
Низкий
почти 4 года назад

Уязвимостей на страницу