Information disclosure in GNOME Web (Epiphany) - CVE-2017-1000025
Published: July 17, 2017 / Updated: August 8, 2020
GNOME Web (Epiphany)
Detailed vulnerability description
The vulnerability allows a remote non-authenticated attacker to gain access to sensitive information.
GNOME Web (Epiphany) 3.23 before 3.23.5, 3.22 before 3.22.6, 3.20 before 3.20.7, 3.18 before 3.18.11, and prior versions, is vulnerable to a password manager sweep attack resulting in the remote exfiltration of stored passwords for a selected set of websites.