Vulnerabilities > Improper Restriction of Rendered UI Layers or Frames
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2023-11-21 | CVE-2023-6211 | Improper Restriction of Rendered UI Layers or Frames vulnerability in Mozilla Firefox If an attacker needed a user to load an insecure http: page and knew that user had enabled HTTPS-only mode, the attacker could have tricked the user into clicking to grant an HTTPS-only exception if they could get the user to participate in a clicking game. | 6.5 |
2023-11-20 | CVE-2023-47311 | Improper Restriction of Rendered UI Layers or Frames vulnerability in Spaceapplications Yacms 5.8.6 An issue in Yamcs 5.8.6 allows attackers to send aribitrary telelcommands in a Command Stack via Clickjacking. | 6.1 |
2023-11-07 | CVE-2023-4956 | Improper Restriction of Rendered UI Layers or Frames vulnerability in Redhat Quay 3.0.0 A flaw was found in Quay. | 4.3 |
2023-10-30 | CVE-2023-36920 | Improper Restriction of Rendered UI Layers or Frames vulnerability in SAP products In SAP Enable Now - versions WPB_MANAGER 1.0, WPB_MANAGER_CE 10, WPB_MANAGER_HANA 10, ENABLE_NOW_CONSUMP_DEL 1704, the X-FRAME-OPTIONS response header is not implemented, allowing an unauthenticated attacker to attempt clickjacking, which could result in disclosure or modification of information. | 6.1 |
2023-10-25 | CVE-2023-5721 | Improper Restriction of Rendered UI Layers or Frames vulnerability in multiple products It was possible for certain browser prompts and dialogs to be activated or dismissed unintentionally by the user due to an insufficient activation-delay. | 4.3 |
2023-10-19 | CVE-2023-41897 | Improper Restriction of Rendered UI Layers or Frames vulnerability in Home-Assistant Home assistant is an open source home automation. | 9.6 |
2023-10-09 | CVE-2023-5103 | Improper Restriction of Rendered UI Layers or Frames vulnerability in Sick Apu0200 Firmware Improper Restriction of Rendered UI Layers or Frames in RDT400 in SICK APU allows an unprivileged remote attacker to potentially reveal sensitive information via tricking a user into clicking on an actionable item using an iframe. | 4.3 |
2023-09-28 | CVE-2023-38873 | Improper Restriction of Rendered UI Layers or Frames vulnerability in Economizzer 0.9/April2023 The commit 3730880 (April 2023) and v.0.9-beta1 of gugoan Economizzer is vulnerable to Clickjacking. | 6.5 |
2023-09-27 | CVE-2023-30961 | Improper Restriction of Rendered UI Layers or Frames vulnerability in Palantir Gotham-Fe-Bundle and Titanium-Browser-App-Bundle Palantir Gotham was found to be vulnerable to a bug where under certain circumstances, the frontend could have applied an incorrect classification to a newly created property or link. | 6.1 |
2023-08-29 | CVE-2023-0654 | Improper Restriction of Rendered UI Layers or Frames vulnerability in Cloudflare Warp Due to a misconfiguration, the WARP Mobile Client (< 6.29) for Android was susceptible to a tapjacking attack. | 3.7 |