VYPR

Macaca Chromedriver Zxa

by Macaca Chromedriver Zxa Project

CVEs (1)

  • CVE-2016-10623HigJun 1, 2018
    risk 0.53cvss 8.1epss 0.02

    macaca-chromedriver-zxa is a Node.js wrapper for the selenium chromedriver. macaca-chromedriver-zxa downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause remote code execution (RCE) by swapping out the requested binary with…