VYPR
Low severity1.8NVD Advisory· Published Apr 22, 2019· Updated Jun 17, 2026

CVE-2016-1586

CVE-2016-1586

Description

A malicious webview could install long-lived unload handlers that re-use an incognito BrowserContext that is queued for destruction in versions of Oxide before 1.18.3.

Affected products

3
  • cpe:2.3:a:oxide_project:oxide:*:*:*:*:*:*:*:*
    Range: <1.18.3
  • Oxide/Oxidellm-fuzzy
    Range: <1.18.3
  • Ubuntu/Oxidev5
    Range: unspecified

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.