Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 3

Количество 3

nvd логотип

CVE-2026-48287

17 дней назад

CAI Content Credentials is affected by an Untrusted Search Path vulnerability that could result in arbitrary code execution in the context of the current user. Exploit depends on conditions beyond the attacker's control. Exploitation of this issue requires user interaction in that a victim must visit a maliciously crafted URL or interact with a compromised web page. Scope is changed.

CVSS3: 7.4
EPSS: Низкий
github логотип

GHSA-g23w-pc29-375j

17 дней назад

CAI Content Credentials is affected by an Untrusted Search Path vulnerability that could result in arbitrary code execution in the context of the current user. Exploit depends on conditions beyond the attacker's control. Exploitation of this issue requires user interaction in that a victim must visit a maliciously crafted URL or interact with a compromised web page. Scope is changed.

CVSS3: 7.4
EPSS: Низкий
fstec логотип

BDU:2026-10100

18 дней назад

Уязвимость наборов библиотек Content Credentials SDK, связанная с использованием ненадёжного пути поиска, позволяющая нарушителю выполнить произвольный код

CVSS3: 7.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2026-48287

CAI Content Credentials is affected by an Untrusted Search Path vulnerability that could result in arbitrary code execution in the context of the current user. Exploit depends on conditions beyond the attacker's control. Exploitation of this issue requires user interaction in that a victim must visit a maliciously crafted URL or interact with a compromised web page. Scope is changed.

CVSS3: 7.4
0%
Низкий
17 дней назад
github логотип
GHSA-g23w-pc29-375j

CAI Content Credentials is affected by an Untrusted Search Path vulnerability that could result in arbitrary code execution in the context of the current user. Exploit depends on conditions beyond the attacker's control. Exploitation of this issue requires user interaction in that a victim must visit a maliciously crafted URL or interact with a compromised web page. Scope is changed.

CVSS3: 7.4
0%
Низкий
17 дней назад
fstec логотип
BDU:2026-10100

Уязвимость наборов библиотек Content Credentials SDK, связанная с использованием ненадёжного пути поиска, позволяющая нарушителю выполнить произвольный код

CVSS3: 7.4
0%
Низкий
18 дней назад

Уязвимостей на страницу