Vulnerabilities in zen-browser
5 resultsVexday analysis
O Zen Browser apresenta 5 vulnerabilidades catalogadas, todas publicadas nos últimos 90 dias, indicando risco recente e em evolução. Nenhuma vulnerabilidade está sob ataque ativo conhecido (KEV) e não há casos críticos (CVSS), reduzindo a urgência imediata. A fraqueza dominante é CWE-451 (User Interface (UI) Misrepresentation of Critical Information), sugerindo problemas de interface que podem impactar a confiabilidade do produto, mas com severidade moderada.
CVE-2026-57501NONEZen: Context-menu "Open link in glance" / "Split link in new tab" loads a page-controlled link with the System principal, bypassing the web-content scheme restrictionEPSS 0.3%CVE-2026-45150MEDIUMZen Browser - Missing Fullscreen Security Notification Allows Origin SpoofingEPSS 0.3%CVE-2026-41431HIGHZen Browser MAR updater ships with signature verification removed — unsigned updates acceptedEPSS 0.2%CVE-2026-44659MEDIUMZen Browser Mac - Address Bar Spoofing via Long SubdomainEPSS 0.2%CVE-2026-44658LOWZen Browser: RSS Live-Folder Item URLs Are Not Scheme-Restricted Before Trusted Tab CreationEPSS 0.2%