VYPR
Unrated severityNVD Advisory· Published Feb 25, 2010· Updated Apr 29, 2026

CVE-2010-0011

CVE-2010-0011

Description

The eval_js function in uzbl-core.c in Uzbl before 2010.01.05 exposes the run method of the Uzbl object, which allows remote attackers to execute arbitrary commands via JavaScript code.

Affected products

1
  • cpe:2.3:a:uzbl:uzbl:*:*:*:*:*:*:*:*
    Range: <=2009.12.22

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

6

News mentions

0

No linked articles in our index yet.