Vulnerabilities > Origin Validation Error

DATE CVE VULNERABILITY TITLE RISK
2019-06-27 CVE-2019-5834 Origin Validation Error vulnerability in multiple products
Insufficient data validation in Blink in Google Chrome prior to 75.0.3770.80 allowed a remote attacker to perform domain spoofing via a crafted HTML page.
network
low complexity
google opensuse fedoraproject debian CWE-346
6.5
2019-06-07 CVE-2019-8282 Origin Validation Error vulnerability in Gemalto Sentinel LDK
Gemalto Admin Control Center, all versions prior to 7.92, uses cleartext HTTP to communicate with www3.safenet-inc.com to obtain language packs.
network
high complexity
gemalto CWE-346
5.3
2019-05-08 CVE-2018-5409 Origin Validation Error vulnerability in Printerlogic Print Management 18.3.1.96
The PrinterLogic Print Management software, versions up to and including 18.3.1.96, updates and executes the code without sufficiently verifying the origin and integrity of the code.
network
low complexity
printerlogic CWE-346
critical
9.8
2019-04-26 CVE-2019-9808 Origin Validation Error vulnerability in Mozilla Firefox
If WebRTC permission is requested from documents with data: or blob: URLs, the permission notifications do not properly display the originating domain.
network
low complexity
mozilla CWE-346
5.3
2019-04-26 CVE-2019-9803 Origin Validation Error vulnerability in Mozilla Firefox
The Upgrade-Insecure-Requests (UIR) specification states that if UIR is enabled through Content Security Policy (CSP), navigation to a same-origin URL must be upgraded to HTTPS.
network
high complexity
mozilla CWE-346
7.4
2019-04-26 CVE-2019-9797 Origin Validation Error vulnerability in Mozilla Firefox
Cross-origin images can be read in violation of the same-origin policy by exporting an image after using createImageBitmap to read the image and then rendering the resulting bitmap image within a canvas element.
network
low complexity
mozilla CWE-346
5.3
2019-04-03 CVE-2018-4319 Origin Validation Error vulnerability in Apple products
A cross-origin issue existed with "iframe" elements.
network
low complexity
apple CWE-346
8.1
2019-03-26 CVE-2019-9764 Origin Validation Error vulnerability in Hashicorp Consul 1.4.3
HashiCorp Consul 1.4.3 lacks server hostname verification for agent-to-agent TLS communication.
network
high complexity
hashicorp CWE-346
7.4
2019-02-28 CVE-2018-18499 Origin Validation Error vulnerability in Mozilla Firefox
A same-origin policy violation allowing the theft of cross-origin URL entries when using a meta http-equiv="refresh" on a page to cause a redirection to another site using performance.getEntries().
network
low complexity
mozilla CWE-346
6.5
2019-02-28 CVE-2018-18494 Origin Validation Error vulnerability in multiple products
A same-origin policy violation allowing the theft of cross-origin URL entries when using the Javascript location property to cause a redirection to another site using performance.getEntries().
network
low complexity
mozilla debian canonical redhat CWE-346
6.5