A malicious webview could install long-lived unload handlers that re-use an incognito BrowserContext that is queued for destruction in versions of Oxide before 1.18.3.
2019-04-22T16:29:01.367
2024-11-21T02:46:41.607
Modified
CVSSv3.0: 1.8 (LOW)
AV:N/AC:L/Au:N/C:N/I:P/A:N
10.0
2.9
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | oxide_project | oxide | < 1.18.3 | Yes |