Skip to content

Inappropriate implementation in V8

High severity GitHub Reviewed Published Dec 1, 2020 in cefsharp/CefSharp • Updated Jun 6, 2023

Package

nuget CefSharp.Common (NuGet)

Affected versions

< 86.0.241

Patched versions

86.0.241
nuget CefSharp.WinForms (NuGet)
< 86.0.241
86.0.241
nuget CefSharp.Wpf (NuGet)
< 86.0.241
86.0.241
nuget CefSharp.Wpf.HwndHost (NuGet)
< 86.0.241
86.0.241
Published by the National Vulnerability Database Nov 3, 2020
@amaitland amaitland published to cefsharp/CefSharp Dec 1, 2020
Reviewed Dec 2, 2020
Published to the GitHub Advisory Database Dec 2, 2020
Last updated Jun 6, 2023

Severity

High
8.8
/ 10

CVSS base metrics

Attack vector
Network
Attack complexity
Low
Privileges required
None
User interaction
Required
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
High
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Weaknesses

CVE ID

CVE-2020-16009

GHSA ID

GHSA-m7mf-48hp-5qmr

Source code

Checking history
See something to contribute? Suggest improvements for this vulnerability.