5.5
CVE-2025-51497
- EPSS 0.14%
- Veröffentlicht 17.07.2025 00:00:00
- Zuletzt bearbeitet 09.10.2025 19:13:49
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
An issue was discovered in AdGuard plugin before 1.11.22 for Safari on MacOS. AdGaurd verbosely logged each url that Safari accessed when the plugin was active. These logs went into the MacOS general logs for any unsandboxed process to read. This may be disabled in version 1.11.22.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Adguard ≫ Adguard For Safari SwPlatformmacos Version < 1.11.22
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.14% | 0.033 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| 134c704f-9b21-4f2e-91b3-4a467353bcc0 | 5.5 | 1.8 | 3.6 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
|
CWE-532 Insertion of Sensitive Information into Log File
The product writes sensitive information to a log file.
https://adguard.com/en/adguard-safari/overview.html
https://github.com/AdguardTeam/AdGuardForSafari
https://www.mcrich23.com/post/adguard-messed-up-their-logging