Password Exfiltration Vulnerability in Epiphany Browser by GNOME
CVE-2023-26081
7.5HIGH
What is CVE-2023-26081?
In Epiphany (also known as GNOME Web) version 43.0, a security flaw exists where untrusted web content can manipulate the autofill feature, causing users' passwords to be inadvertently exfiltrated from sandboxed contexts. This vulnerability highlights the risks associated with autofill mechanisms when interacting with potentially malicious websites.