High
CVSS 7.5
Overview
The eval_js function in uzbl-core.c in Uzbl before 2010.01.05 exposes the run method of the Uzbl object, which allows remote attackers to execute arbitrary commands via JavaScript code.
The eval_js function in uzbl-core.c in Uzbl before 2010.01.05 exposes the run me...
The eval_js function in uzbl-core.c in Uzbl before 2010.01.05 exposes the run method of the Uzbl object, which allows remote attackers to execute arbitrary commands via JavaScript code.
This vulnerability is rated 🟠 HIGH.
Recommended actions: