Fedoraproject

Fedora

5365 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.8%
  • Veröffentlicht 03.05.2023 00:15:09
  • Zuletzt bearbeitet 21.11.2024 07:58:39

Inappropriate implementation in Prompts in Google Chrome prior to 113.0.5672.63 allowed a remote attacker to obfuscate main origin data via a crafted HTML page. (Chromium security severity: Medium)

  • EPSS 0.86%
  • Veröffentlicht 03.05.2023 00:15:09
  • Zuletzt bearbeitet 21.11.2024 07:58:40

Inappropriate implementation in Full Screen Mode in Google Chrome on Android prior to 113.0.5672.63 allowed a remote attacker to hide the contents of the Omnibox (URL bar) via a crafted HTML page. (Chromium security severity: Medium)

  • EPSS 0.65%
  • Veröffentlicht 03.05.2023 00:15:09
  • Zuletzt bearbeitet 21.11.2024 07:58:40

Inappropriate implementation in PictureInPicture in Google Chrome prior to 113.0.5672.63 allowed an attacker who convinced a user to install a malicious extension to perform an origin spoof in the security UI via a crafted HTML page. (Chromium securi...

  • EPSS 0.97%
  • Veröffentlicht 03.05.2023 00:15:09
  • Zuletzt bearbeitet 21.11.2024 07:58:40

Inappropriate implementation in CORS in Google Chrome prior to 113.0.5672.63 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium)

  • EPSS 0.8%
  • Veröffentlicht 03.05.2023 00:15:09
  • Zuletzt bearbeitet 21.11.2024 07:58:40

Inappropriate implementation in Prompts in Google Chrome prior to 113.0.5672.63 allowed a remote attacker to spoof the contents of the security UI via a crafted HTML page. (Chromium security severity: Low)

  • EPSS 0.82%
  • Veröffentlicht 03.05.2023 00:15:09
  • Zuletzt bearbeitet 21.11.2024 07:58:40

Inappropriate implementation in Prompts in Google Chrome on Android prior to 113.0.5672.63 allowed a remote attacker to bypass permissions restrictions via a crafted HTML page. (Chromium security severity: Low)

  • EPSS 0.8%
  • Veröffentlicht 03.05.2023 00:15:09
  • Zuletzt bearbeitet 21.11.2024 07:58:40

Inappropriate implementation in PictureInPicture in Google Chrome prior to 113.0.5672.63 allowed a remote attacker who had compromised the renderer process to obfuscate the security UI via a crafted HTML page. (Chromium security severity: Low)

  • EPSS 0.97%
  • Veröffentlicht 03.05.2023 00:15:08
  • Zuletzt bearbeitet 21.11.2024 07:58:39

Inappropriate implementation in Prompts in Google Chrome prior to 113.0.5672.63 allowed a remote attacker to bypass permission restrictions via a crafted HTML page. (Chromium security severity: Medium)

  • EPSS 1.14%
  • Veröffentlicht 02.05.2023 20:15:11
  • Zuletzt bearbeitet 21.11.2024 08:01:07

The vulnerability was found Moodle which exists due to insufficient sanitization of user-supplied data in external Wiki method for listing pages. A remote attacker can send a specially crafted request to the affected application and execute limited S...

  • EPSS 6.58%
  • Veröffentlicht 02.05.2023 20:15:10
  • Zuletzt bearbeitet 21.11.2024 08:01:07

The vulnerability was found Moodle which exists because the application allows a user to control path of the older to create in TinyMCE loaders. A remote user can send a specially crafted HTTP request and create arbitrary folders on the system.