Loading arbitrary external URLs through WebView components introduces malicious JS code that can steal arbitrary user tokens.
Publication date: Thu, 14 Aug 2025 07:15:00 +0000
Cyber News related to CVE-2025-27388
CVE-2025-27388 - Loading arbitrary external URLs through WebView components introduces malicious JS code that can steal arbitrary user tokens. ...
6 months ago
CVE-2020-27388 - Multiple Stored Cross Site Scripting (XSS) vulnerabilities exist in the YOURLS Admin Panel, Versions 1.5 - 1.7.10. An authenticated user must modify a PHP plugin with a malicious payload and upload it, resulting in multiple stored XSS issues. ...
5 years ago
CVE-2021-27388 - SINAMICS medium voltage routable products are affected by a vulnerability in the Sm@rtServer component for remote access that could allow an unauthenticated attacker to cause a denial-of-service condition, and/or execution of limited configuration ...
4 years ago
CVE-2023-27388 - Improper authentication vulnerability in T&D Corporation and ESPEC MIC CORP. data logger products allows a remote unauthenticated attacker to login to the product as a registered user. Affected products and versions are as follows: T&D ...
2 years ago
CVE-2024-27388 - In the Linux kernel, the following vulnerability has been resolved: ...
1 year ago