#VU50233 Security restrictions bypass in WPE WebKit and WebKitGTK+ - CVE-2021-1801
Published: February 2, 2021 / Updated: March 23, 2021
WPE WebKit
WebKitGTK+
WebKitGTK
Description
The vulnerability allows a remote attacker to escalate privileges on the system.
The vulnerability exists due to application does not properly impose sanboxing policy in WebKit. A remote attacker can create a specially crafted web page, trick the victim into visiting it and bypass implemented security restrictions.