First published: Thu May 12 2022(Updated: )
A vulnerability affecting F-Secure SAFE browser was discovered. An attacker can potentially exploit Javascript window.open functionality in SAFE Browser which could lead address bar spoofing attacks.
Credit: cve-notifications-us@f-secure.com
Affected Software | Affected Version | How to fix |
---|---|---|
F-secure Safe | <=19.0 |
FIX : A fix has been released in the automatic update channel since 3rd May 2022. No user action is required.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-28873 is a vulnerability affecting F-Secure SAFE browser that can be exploited for address bar spoofing attacks.
CVE-2022-28873 affects F-Secure SAFE browser by allowing an attacker to potentially exploit Javascript window.open functionality, leading to address bar spoofing attacks.
The severity of CVE-2022-28873 is medium with a CVSS score of 4.3.
Yes, F-Secure has released a fix for CVE-2022-28873. It is recommended to update to the latest version of F-Secure SAFE browser.
You can find more information about CVE-2022-28873 on F-Secure's website: https://www.f-secure.com/en/home/support/security-advisories/cve-2022-28873