Количество 3
Количество 3
CVE-2022-32969
MetaMask before 10.11.3 might allow an attacker to access a user's secret recovery phrase because an input field is used for a BIP39 mnemonic, and Firefox and Chromium save such fields to disk in order to support the Restore Session feature, aka the Demonic issue.
GHSA-h9g9-j2c8-v8gv
MetaMask before 10.11.3 might allow an attacker to access a user's secret recovery phrase because an input field is used for a BIP39 mnemonic, and Firefox and Chromium save such fields to disk in order to support the Restore Session feature, aka the Demonic issue.
BDU:2022-04071
Уязвимость функции «Restore Session» Web3-кошелька для криптовалют MetaMask, позволяющая нарушителю получить доступ к фразе восстановления доступа
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2022-32969 MetaMask before 10.11.3 might allow an attacker to access a user's secret recovery phrase because an input field is used for a BIP39 mnemonic, and Firefox and Chromium save such fields to disk in order to support the Restore Session feature, aka the Demonic issue. | CVSS3: 5.9 | 0% Низкий | больше 3 лет назад | |
GHSA-h9g9-j2c8-v8gv MetaMask before 10.11.3 might allow an attacker to access a user's secret recovery phrase because an input field is used for a BIP39 mnemonic, and Firefox and Chromium save such fields to disk in order to support the Restore Session feature, aka the Demonic issue. | CVSS3: 5.9 | 0% Низкий | больше 3 лет назад | |
BDU:2022-04071 Уязвимость функции «Restore Session» Web3-кошелька для криптовалют MetaMask, позволяющая нарушителю получить доступ к фразе восстановления доступа | CVSS3: 8.4 | 0% Низкий | больше 3 лет назад |
Уязвимостей на страницу