Medium severity6.1NVD Advisory· Published Dec 16, 2021· Updated Jun 17, 2026
CVE-2021-45085
CVE-2021-45085
Description
XSS can occur in GNOME Web (aka Epiphany) before 40.4 and 41.x before 41.1 via an about: page, as demonstrated by ephy-about:overview when a user visits an XSS payload page often enough to place that page on the Most Visited list.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
6cpe:2.3:a:gnome:epiphany:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:gnome:epiphany:*:*:*:*:*:*:*:*range: <40.4
- (no CPE)range: <40.4, <41.1
- GNOME/GNOME Webdescription
Patches
Vulnerability mechanics
References
4- gitlab.gnome.org/GNOME/epiphany/-/merge_requests/1045nvdPatchVendor Advisory
- gitlab.gnome.org/GNOME/epiphany/-/issues/1612nvdExploitVendor Advisory
- lists.debian.org/debian-lts-announce/2022/08/msg00006.htmlnvdMailing ListThird Party Advisory
- www.debian.org/security/2022/dsa-5042nvdThird Party Advisory
News mentions
0No linked articles in our index yet.