Vulnerability Details CVE-2024-52928
Arc before 1.26.1 on Windows has a bypass issue in the site settings that allows websites (with previously granted permissions) to add new permissions when the user clicks anywhere on the website.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 8.9%
CVSS Severity
CVSS v3 Score 9.6
Products affected by CVE-2024-52928
-
cpe:2.3:a:thebrowser:arc:*
-
cpe:2.3:o:microsoft:windows:-