
Cloud Vulnerability DB
A community-led vulnerabilities database
A vulnerability affecting F-Secure SAFE browser was discovered whereby browsers loads images automatically. This vulnerability (CVE-2021-44748) was disclosed on March 3, 2022, affecting F-Secure SAFE Browser for Android version 18.5. The vulnerability can be exploited remotely by an attacker to execute JavaScript which can be used to trigger universal cross-site scripting through the browser (NVD, CERT-FR).
The vulnerability exists in the browser's automatic image loading functionality, which can be exploited to trigger universal cross-site scripting (XSS) through the browser. User interaction is required prior to exploitation, such as entering a malicious website to trigger the vulnerability (CVE Mitre).
A successful exploitation may lead to arbitrary code execution through universal cross-site scripting in the browser (CVE Mitre).
A fix was released on February 18, 2022, through the automatic update channel. No user action is required if automatic updates are enabled (CERT-FR).
Source: This report was generated using AI
Free Vulnerability Assessment
Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.
Get a personalized demo
"Best User Experience I have ever seen, provides full visibility to cloud workloads."
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
"We know that if Wiz identifies something as critical, it actually is."