Количество 3
Количество 3
CVE-2026-48287
CAI Content Credentials is affected by an Untrusted Search Path vulnerability that could result in arbitrary code execution in the context of the current user. Exploit depends on conditions beyond the attacker's control. Exploitation of this issue requires user interaction in that a victim must visit a maliciously crafted URL or interact with a compromised web page. Scope is changed.
GHSA-g23w-pc29-375j
CAI Content Credentials is affected by an Untrusted Search Path vulnerability that could result in arbitrary code execution in the context of the current user. Exploit depends on conditions beyond the attacker's control. Exploitation of this issue requires user interaction in that a victim must visit a maliciously crafted URL or interact with a compromised web page. Scope is changed.
BDU:2026-10100
Уязвимость наборов библиотек Content Credentials SDK, связанная с использованием ненадёжного пути поиска, позволяющая нарушителю выполнить произвольный код
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-48287 CAI Content Credentials is affected by an Untrusted Search Path vulnerability that could result in arbitrary code execution in the context of the current user. Exploit depends on conditions beyond the attacker's control. Exploitation of this issue requires user interaction in that a victim must visit a maliciously crafted URL or interact with a compromised web page. Scope is changed. | CVSS3: 7.4 | 0% Низкий | 17 дней назад | |
GHSA-g23w-pc29-375j CAI Content Credentials is affected by an Untrusted Search Path vulnerability that could result in arbitrary code execution in the context of the current user. Exploit depends on conditions beyond the attacker's control. Exploitation of this issue requires user interaction in that a victim must visit a maliciously crafted URL or interact with a compromised web page. Scope is changed. | CVSS3: 7.4 | 0% Низкий | 17 дней назад | |
BDU:2026-10100 Уязвимость наборов библиотек Content Credentials SDK, связанная с использованием ненадёжного пути поиска, позволяющая нарушителю выполнить произвольный код | CVSS3: 7.4 | 0% Низкий | 18 дней назад |
Уязвимостей на страницу