Candidate: CVE-2021-45088 PublicDate: 2021-12-16 03:15:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-45088 https://gitlab.gnome.org/GNOME/epiphany/-/issues/1612 https://gitlab.gnome.org/GNOME/epiphany/-/merge_requests/1045 Description: XSS can occur in GNOME Web (aka Epiphany) before 40.4 and 41.x before 41.1 via an error page. Ubuntu-Description: Notes: Mitigation: Bugs: Priority: medium Discovered-by: Assigned-to: CVSS: nvd: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N [6.1 MEDIUM] Patches_epiphany-browser: upstream_epiphany-browser: released (41.2-1) trusty_epiphany-browser: ignored (out of standard support) xenial_epiphany-browser: ignored (out of standard support) bionic_epiphany-browser: needs-triage focal_epiphany-browser: needs-triage hirsute_epiphany-browser: ignored (reached end-of-life) impish_epiphany-browser: needs-triage jammy_epiphany-browser: needs-triage devel_epiphany-browser: needs-triage