The probability is the direct output of the EPSS model, and conveys an overall sense of the threat of exploitation in the wild. The percentile measures the EPSS probability relative to all known EPSS scores. Note: This data is updated daily, relying on the latest available EPSS model version. Check out the EPSS documentation for more details.
In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsUpgrade chromium to version 141.0.7390.54 or higher.
Affected versions of this package are vulnerable to User Interface (UI) Misrepresentation of Critical Information through the Picture-in-Picture window title visibility mechanism in the Media component. An attacker can perform UI spoofing by hiding origin information by serving a crafted HTML page that opens a Picture-in-Picture window on an untrusted site, where the window title would automatically hide after 5 seconds regardless of the site's trust status, potentially misleading users about the content's origin.