Web Designer
by Google
CVEs (3)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2025-4613 | Hig | 0.57 | 8.8 | 0.01 | Jun 12, 2025 | Path traversal in Google Web Designer's template handling versions prior to 16.3.0.0407 on Windows allows attacker to achieve remote code execution by tricking users into downloading a malicious ad template | ||
| CVE-2026-3223 | Hig | 0.51 | 7.8 | 0.00 | Feb 27, 2026 | Arbitrary file write & potential privilege escalation exploiting zip slip vulnerability in Google Web Designer. | ||
| CVE-2025-1079 | Hig | 0.51 | 7.8 | 0.00 | May 12, 2025 | Client RCE on macOS and Linux via improper symbolic link resolution in Google Web Designer's preview feature |
- risk 0.57cvss 8.8epss 0.01
Path traversal in Google Web Designer's template handling versions prior to 16.3.0.0407 on Windows allows attacker to achieve remote code execution by tricking users into downloading a malicious ad template
- risk 0.51cvss 7.8epss 0.00
Arbitrary file write & potential privilege escalation exploiting zip slip vulnerability in Google Web Designer.
- risk 0.51cvss 7.8epss 0.00
Client RCE on macOS and Linux via improper symbolic link resolution in Google Web Designer's preview feature