Vulnerabilities > Qutebrowser > Medium

DATE CVE VULNERABILITY TITLE RISK
2018-06-26 CVE-2018-1000559 Cross-site Scripting vulnerability in Qutebrowser
qutebrowser version introduced in v0.11.0 (1179ee7a937fb31414d77d9970bac21095358449) contains a Cross Site Scripting (XSS) vulnerability in history command, qute://history page that can result in Via injected JavaScript code, a website can steal the user's browsing history.
network
low complexity
qutebrowser CWE-79
6.1