Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Bitwarden through 2023.2.1 offers password auto-fill within a cross-domain IFRAME element. NOTE: the vendor's position is that there have been important legitimate cross-domain configurations (e.g., an apple.com IFRAME element on the icloud.com website) and that "Auto-fill on page load" is not enabled by default.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Bitwarden 安全漏洞
Vulnerability Description
Bitwarden是美国Bitwarden公司的一款开源的密码管理器。 Bitwarden 2023.2.1版本及之前版本存在安全漏洞,该漏洞源于在跨域IFRAME元素中密码会自动填充。
CVSS Information
N/A
Vulnerability Type
N/A