VYPR

Gnome

by GNOME Foundation

CVEs (6)

  • CVE-2023-6872MedDec 19, 2023
    risk 0.42cvss 6.5epss 0.01

    Browser tab titles were being leaked by GNOME to system logs. This could potentially expose the browsing habits of users running in a private tab. This vulnerability affects Firefox < 121.

  • CVE-2021-45088MedDec 16, 2021
    risk 0.40cvss 6.1epss 0.01

    XSS can occur in GNOME Web (aka Epiphany) before 40.4 and 41.x before 41.1 via an error page.

  • CVE-2021-45087MedDec 16, 2021
    risk 0.40cvss 6.1epss 0.01

    XSS can occur in GNOME Web (aka Epiphany) before 40.4 and 41.x before 41.1 when View Source mode or Reader mode is used, as demonstrated by a a page title.

  • CVE-2021-45086MedDec 16, 2021
    risk 0.40cvss 6.1epss 0.01

    XSS can occur in GNOME Web (aka Epiphany) before 40.4 and 41.x before 41.1 because a server's suggested_filename is used as the pdf_name value in PDF.js.

  • CVE-2021-45085MedDec 16, 2021
    risk 0.40cvss 6.1epss 0.01

    XSS can occur in GNOME Web (aka Epiphany) before 40.4 and 41.x before 41.1 via an about: page, as demonstrated by ephy-about:overview when a user visits an XSS payload page often enough to place that page on the Most Visited list.

  • CVE-2008-3533Aug 18, 2008
    risk 0.05cvss —epss 0.19

    Format string vulnerability in the window_error function in yelp-window.c in yelp in Gnome after 2.19.90 and before 2.24 allows remote attackers to execute arbitrary code via format string specifiers in an invalid URI on the command line, as demonstrated by use of yelp within…