← Zurück zur CVE-Suche

CVE-2026-35467

Temporary browser client

Beschreibung

The stored API keys in temporary browser client is not marked as protected allowing for JavScript console or other errors to allow for extraction of the encryption credentials.

CVSS 7.5EPSS 0.232%Risiko 0.77
Quelle öffnen
Veröffentlicht
2026-04-02 21:16:40
Betroffene Versionen
unknown
Typ
Sonstiges
Zuletzt geändert
2026-07-24 21:10:00
Vektor
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N