ZeroHour

CVE-2024-52928

CVSS 3.1
8.3 high
EPSS
<1%p34
Published
()
Modified
Description

Arc before 1.26.1 on Windows has a bypass issue in the site settings that allows websites (with previously granted permissions) to add new permissions when the user clicks anywhere on the website.

Vendors
thebrowser
Products
arc
Weakness
CWE-284
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:L

In the news

No ingested article mentions this CVE yet.