7.5
CVSSv3

CVE-2023-26081

Published: 20/02/2023 Updated: 07/11/2023
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

In Epiphany (aka GNOME Web) up to and including 43.0, untrusted web content can trick users into exfiltrating passwords, because autofill occurs in sandboxed contexts.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

gnome epiphany

fedoraproject fedora 37

Vendor Advisories

Debian Bug report logs - #1031727 epiphany-browser: CVE-2023-26081 Package: src:epiphany-browser; Maintainer for src:epiphany-browser is Debian GNOME Maintainers <pkg-gnome-maintainers@listsaliothdebianorg>; Reported by: Moritz Mühlenhoff <jmm@inutilorg> Date: Tue, 21 Feb 2023 15:09:07 UTC Severity: important Ta ...