V
Scaner-VS
HomeCatalogSourcesCWECAPECATT&CKMitigationsProductsVendorsDocs
Filters

All vulnerabilities

393 / 393
CAPEC: CAPEC-654×Clear all
9.6
CVE-2021-21132AST
Inappropriate implementation in DevTools in Google Chrome prior to 88.0.4324.96 allowed a remot…
2021-01-01Pre-auth
EPSS23.4%
pct 97
5.8
CVE-2011-1244CVE
Microsoft Internet Explorer 6, 7, and 8 does not enforce intended domain restrictions on conten…
2011-01-01
EPSS15.1%
pct 96
4.3
CVE-2013-2682CVE
Cisco Linksys E4200 1.0.05 Build 7 devices contain a Clickjacking Vulnerability which allows re…
2013-01-01Pre-auth
EPSS6.2%
pct 92
6.5
CVE-2021-21139AST
Inappropriate implementation in iframe sandbox in Google Chrome prior to 88.0.4324.96 allowed a…
2021-01-01Pre-auth
EPSS4.7%
pct 90
6.1
CVE-2017-11290CVE
An issue was discovered in Adobe Connect 9.6.2 and earlier versions. A UI Redress (or Clickjack…
2017-01-01Pre-auth
EPSS3.0%
pct 85
5.0
CVE-2008-2716CVE
Unspecified vulnerability in Opera before 9.5 allows remote attackers to spoof the contents of …
2008-01-01
EPSS3.0%
pct 85
5.1
CVE-2005-2407CVE
A design error in Opera 8.01 and earlier allows user-assisted attackers to execute arbitrary co…
2005-01-01
EPSS2.7%
pct 84
4.3
CVE-2014-1480DEB
The file-download implementation in Mozilla Firefox before 27.0 and SeaMonkey before 2.24 does …
2014-01-01
EPSS2.7%
pct 83
6.5
CVE-2018-17192CVE
The X-Frame-Options headers were applied inconsistently on some HTTP responses, resulting in du…
2018-01-01Pre-auth
EPSS2.7%
pct 83
4.3
CVE-2014-1483DEB
Mozilla Firefox before 27.0 and SeaMonkey before 2.24 allow remote attackers to bypass the Same…
2014-01-01
EPSS2.5%
pct 82
5.1
CVE-2013-5614DEB
Mozilla Firefox before 26.0 and SeaMonkey before 2.23 do not properly consider the sandbox attr…
2013-01-01
EPSS2.4%
pct 81
4.3
CVE-2019-7393CVE
A UI redress vulnerability in the administrative user interface of CA Technologies CA Strong Au…
2019-01-01
EPSS2.3%
pct 81
6.4
CVE-2015-1241DEB
Google Chrome before 42.0.2311.90 does not properly consider the interaction of page navigation…
2015-01-01
EPSS2.2%
pct 80
6.5
CVE-2013-2675CVE
Brother MFC-9970CDW 1.10 devices with Firmware L contain a Frameable response (Clickjacking) vu…
2013-01-01Pre-auth
EPSS2.2%
pct 79
3.1
CVE-2020-2105DEB
REST API endpoints in Jenkins 2.218 and earlier, LTS 2.204.1 and earlier were vulnerable to cli…
2020-01-01Pre-auth
EPSS1.8%
pct 76
7.5
CVE-2021-43536AST
Under certain circumstances, asynchronous functions could have caused a navigation to fail but …
2021-01-01Pre-auth
EPSS1.7%
pct 73
6.1
CVE-2021-38509AST
Due to an unusual sequence of attacker-controlled events, a Javascript alert() dialog with arbi…
2021-01-01Pre-auth
EPSS1.6%
pct 72
4.3
CVE-2022-28889DEB
In Apache Druid 0.22.1 and earlier, the server did not set appropriate headers to prevent click…
2022-01-01Pre-auth
EPSS1.6%
pct 72
7.5
CVE-2023-5724AST
Drivers are not always robust to extremely large draw calls and in some cases this scenario cou…
2023-01-01Pre-auth
EPSS1.6%
pct 72
5.4
CVE-2021-3799CVE
grav-plugin-admin is vulnerable to Improper Restriction of Rendered UI Layers or Frames
2021-01-01
EPSS1.5%
pct 71
6.5
CVE-2020-24711CVE
The Reset button on the Account Settings page in Gophish before 0.11.0 allows attackers to caus…
2020-01-01Pre-auth
EPSS1.5%
pct 71
6.1
CVE-2021-38508AST
By displaying a form validity message in the correct location at the same time as a permission …
2021-01-01Pre-auth
EPSS1.5%
pct 71
6.9
CVE-2022-1803CVE
Improper Restriction of Rendered UI Layers or Frames in GitHub repository polonel/trudesk prior…
2022-01-01
EPSS1.5%
pct 71
5.4
CVE-2021-37788CVE
A vulnerability in the web UI of Gurock TestRail v5.3.0.3603 could allow an unauthenticated, re…
2021-01-01Pre-auth
EPSS1.5%
pct 71
8.1
CVE-2022-22592AST
A logic issue was addressed with improved state management. This issue is fixed in iOS 15.3 and…
2022-01-01Pre-auth
EPSS1.5%
pct 70
7.5
CVE-2021-38506AST
Through a series of navigations, Firefox could have entered fullscreen mode without notificatio…
2021-01-01Pre-auth
EPSS1.5%
pct 70
4.3
CVE-2019-9147CVE
Mailvelope prior to 3.1.0 is vulnerable to a clickjacking attack against the settings page. As …
2019-01-01Pre-auth
EPSS1.4%
pct 69
6.1
CVE-2021-46708DEB
The swagger-ui-dist package before 4.1.3 for Node.js could allow a remote attacker to hijack th…
2021-01-01Pre-auth
EPSS1.4%
pct 69
4.3
CVE-2017-5026DEB
Google Chrome prior to 56.0.2924.76 for Linux, Windows and Mac, failed to prevent alerts from b…
2017-01-01Pre-auth
EPSS1.4%
pct 69
4.3
CVE-2019-12880CVE
BCN Quark Quarking Password Manager 3.1.84 suffers from a clickjacking vulnerability caused by …
2019-01-01Pre-auth
EPSS1.4%
pct 69
6.1
CVE-2023-1362CVE
Improper Restriction of Rendered UI Layers or Frames in GitHub repository unilogies/bumsys prio…
2023-01-01Pre-auth
EPSS1.4%
pct 69
5.4
CVE-2021-43546AST
It was possible to recreate previous cursor spoofing attacks against users with a zoomed native…
2021-01-01Pre-auth
EPSS1.4%
pct 68
4.3
CVE-2019-15930CVE
Intesync Solismed 3.3sp allows Clickjacking.
2019-01-01Pre-auth
EPSS1.4%
pct 68
9.6
CVE-2021-4140AST
It was possible to construct specific XSLT markup that would be able to bypass an iframe sandbo…
2021-01-01Pre-auth
EPSS1.3%
pct 67
6.5
CVE-2022-46695CVE
A spoofing issue existed in the handling of URLs. This issue was addressed with improved input …
2022-01-01Pre-auth
EPSS1.3%
pct 66
6.5
CVE-2017-5016DEB
Blink in Google Chrome prior to 56.0.2924.76 for Linux, Windows and Mac, and 56.0.2924.87 for A…
2017-01-01Pre-auth
EPSS1.3%
pct 66
7.5
CVE-2022-40959AST
During iframe navigation, certain pages did not have their FeaturePolicy fully initialized lead…
2022-01-01Pre-auth
EPSS1.3%
pct 66
6.5
CVE-2019-5767DEB
Insufficient protection of permission UI in WebAPKs in Google Chrome on Android prior to 72.0.3…
2019-01-01Pre-auth
EPSS1.3%
pct 66
4.3
CVE-2020-26953AST
It was possible to cause the browser to enter fullscreen mode without displaying the security U…
2020-01-01Pre-auth
EPSS1.3%
pct 66
6.1
CVE-2019-4109CVE
IBM WebSphere eXtreme Scale 8.6 Admin Console could allow a remote attacker to hijack the click…
2019-01-01Pre-auth
EPSS1.2%
pct 65
Select a vulnerability on the left to open the preview.