First published: Fri Apr 15 2022(Updated: )
A vulnerability affecting F-Secure SAFE browser was discovered. A maliciously crafted website could make a phishing attack with address bar spoofing as the browser did not show full URL, such as port number.
Credit: cve-notifications-us@f-secure.com
Affected Software | Affected Version | How to fix |
---|---|---|
F-secure Safe | <=18.6 |
FIX: A fix has been released in the automatic update channel since 13th, April 2022. No user action is required.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-28869 is a vulnerability affecting F-Secure SAFE browser that allows for address bar spoofing in a phishing attack.
CVE-2022-28869 allows a maliciously crafted website to spoof the address bar in F-Secure SAFE browser, making it difficult for users to distinguish the true URL.
CVE-2022-28869 has a severity rating of 4.3, which is considered medium.
F-Secure SAFE browser version 18.6 and below are affected by CVE-2022-28869.
To protect yourself from CVE-2022-28869, make sure to keep your F-Secure SAFE browser up to date with the latest security patches and avoid visiting suspicious or untrusted websites.