Skip to main content

Vendor/product archive

f-secure / safe CVEs

Beta · best-effort

19 CVEs tagged to f-secure / safe0 Critical, 3 High, 12 Medium, 4 Low, 0 Unrated.

CVE-2022-47524

Published Dec 23, 2022

F-Secure SAFE Browser 19.1 before 19.2 for Android allows an IDN homograph attack.

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-38164

Published Nov 7, 2022

A vulnerability affecting F-Secure SAFE browser for Android and iOS was discovered. A maliciously crafted website could make a phishing attack with URL spoofing as the browser onl…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-38163

Published Nov 7, 2022

A Drag and Drop spoof vulnerability was discovered in F-Secure SAFE Browser for Android and iOS version 19.0 and below. Drag and drop operation by user on address bar could lead t…

CVSS 3.5 · Low
Vendor/product tagsBeta · best-effort

CVE-2022-28873

Published May 12, 2022

A vulnerability affecting F-Secure SAFE browser was discovered. An attacker can potentially exploit Javascript window.open functionality in SAFE Browser which could lead address b…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-28872

Published May 12, 2022

A vulnerability affecting F-Secure SAFE browser was discovered. A maliciously crafted website could make a phishing attack with address bar spoofing as the address bar was not cor…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-28870

Published Apr 15, 2022

A vulnerability affecting F-Secure SAFE browser was discovered. A maliciously crafted website could make a phishing attack with address bar spoofing as the address bar was not cor…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-28869

Published Apr 15, 2022

A vulnerability affecting F-Secure SAFE browser was discovered. A maliciously crafted website could make a phishing attack with address bar spoofing as the browser did not show fu…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-28868

Published Apr 15, 2022

An Address bar spoofing vulnerability was discovered in Safe Browser for Android. When user clicks on a specially crafted malicious webpage/URL, user may be tricked for a short pe…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-44751

Published Mar 25, 2022

A vulnerability affecting F-Secure SAFE browser was discovered. A maliciously crafted website attached with USSD code in JavaScript or iFrame can trigger dialer application from F…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-44749

Published Mar 6, 2022

A vulnerability affecting F-Secure SAFE browser protection was discovered improper URL handling can be triggered to cause universal cross-site scripting through browsing protectio…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-44748

Published Mar 6, 2022

A vulnerability affecting F-Secure SAFE browser was discovered whereby browsers loads images automatically this vulnerability can be exploited remotely by an attacker to execute t…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-40835

Published Dec 16, 2021

An URL Address bar spoofing vulnerability was discovered in Safe Browser for iOS. When user clicks on a specially crafted a malicious URL, if user does not carefully pay attention…

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-40834

Published Dec 10, 2021

A user interface overlay vulnerability was discovered in F-secure SAFE Browser for Android. When user click on a specially crafted seemingly legitimate URL SAFE browser goes into…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-33595

Published Aug 11, 2021

A address bar spoofing vulnerability was discovered in Safe Browser for iOS. Showing the legitimate URL in the address bar while loading the content from other domain. This makes…

CVSS 3.5 · Low
Vendor/product tagsBeta · best-effort

CVE-2021-33594

Published Aug 11, 2021

An address bar spoofing vulnerability was discovered in Safe Browser for Android. When user clicks on a specially crafted a malicious URL, it appears like a legitimate one on the…

CVSS 3.5 · Low
Vendor/product tagsBeta · best-effort

CVE-2021-33596

Published Aug 5, 2021

Showing the legitimate URL in the address bar while loading the content from other domain. This makes the user believe that the content is served by a legit domain. Exploiting the…

CVSS 3.5 · Low
Vendor/product tagsBeta · best-effort

CVE-2020-14978

Published Jun 23, 2020

An issue was discovered in F-Secure SAFE 17.7 on macOS. Due to incorrect client version verification, an attacker can connect to a privileged XPC service, and execute privileged c…

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort

CVE-2020-14977

Published Jun 23, 2020

An issue was discovered in F-Secure SAFE 17.7 on macOS. The XPC services use the PID to identify the connecting client, which allows an attacker to perform a PID reuse attack and…

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort
Showing 1-19 of 19 CVEsPage 1 of 1