VYPR
Medium severity6.1NVD Advisory· Published Jul 13, 2022· Updated Jun 17, 2026

CVE-2022-32308

CVE-2022-32308

Description

Cross Site Scripting (XSS) vulnerability in uBlock Origin extension before 1.41.1 allows remote attackers to run arbitrary code via a spoofed 'MessageSender.url' to the browser renderer process.

Affected products

3

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.