pkg:Debian/epiphany-browser
20 total CVEsHIGH9MEDIUM6LOW1
✅ Check your installed version
All known vulnerabilities
- from 0, < 3.34.1-1
- HIGH8.0CVE-2025-3839A flaw was found in Epiphany, a tool that allows websites to open external URL handler applications with minimal user interaction.from 0
- from 0
- from 0, < 3.32.1.2-3~deb10u3
- from 0, < 3.38.2-1+deb11u3
- from 0, < 3.38.2-1+deb11u3
- HIGH7.5CVE-2018-12016libephymain.so in GNOME Web (aka Epiphany) through 3.28.2.1 allows remote attackers to cause a denial of service (application crash) via ce…from 0, < 3.28.3.1-1
- HIGH7.5CVE-2018-11396ephy-session.c in libephymain.so in GNOME Web (aka Epiphany) through 3.28.2.1 allows remote attackers to cause a denial of service (applica…from 0, < 3.28.2.1-1
- HIGH7.5CVE-2017-1000025GNOME Web (Epiphany) 3.23 before 3.23.5, 3.22 before 3.22.6, 3.20 before 3.20.7, 3.18 before 3.18.11, and prior versions, is vulnerable to…from 0, < 3.22.6-1
- MEDIUM6.1CVE-2021-45088XSS can occur in GNOME Web (aka Epiphany) before 40.4 and 41.x before 41.1 via an error page.from 0, < 3.38.2-1+deb11u1
- MEDIUM6.1CVE-2021-45087XSS can occur in GNOME Web (aka Epiphany) before 40.4 and 41.x before 41.1 when View Source mode or Reader mode is used, as demonstrated by…from 0, < 3.38.2-1+deb11u1
- MEDIUM6.1CVE-2021-45086XSS can occur in GNOME Web (aka Epiphany) before 40.4 and 41.x before 41.1 because a server's suggested_filename is used as the pdf_name va…from 0, < 3.38.2-1+deb11u1
- from 0, < 3.38.2-1+deb11u1
- from 0, < 3.32.1.2-3~deb10u2
- from 0, < 3.38.2-1+deb11u1
- from 0
- —CVE-2010-3312Epiphany 2.28 and 2.29, when WebKit and LibSoup are used, unconditionally displays a closed-lock icon for any URL beginning with the https:…from 0, < 2.29.91-1
- —CVE-2008-5985Untrusted search path vulnerability in the Python interface in Epiphany 2.22.3, and possibly other versions, allows local users to execute…from 0, < 2.22.3-7
- —CVE-2007-1084Mozilla Firefox 2.0.0.1 and earlier does not prompt users before saving bookmarklets, which allows remote attackers to bypass the same-doma…from 0
- —CVE-2005-0238The International Domain Name (IDN) support in Epiphany allows remote attackers to spoof domain names using punycode encoded domain names t…from 0, < 1.4.8-2