All 4 CVE vulnerabilities found in PlaywrightCapture, with AI-generated Chinese analysis, references, and POCs.
Vendor: Lookyloo
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-85242 | Server-Side Request Forgery via Favicon Redirect to Local Network Resources in PlaywrightCapture CWE-918 | 6.9 | Medium | 2026-09-03 |
| CVE-2026-73210 | Server-Side Request Forgery via Favicon Retrieval in Lookyloo PlaywrightCapture CWE-918 | 5.1 | Medium | 2026-08-11 |
| CVE-2026-63175 | Cross-Capture Session Data Leakage Due to Shared Mutable State in Looklyloo - PlaywrightCapture CWE-613 | - | - | 2026-07-15 |
| CVE-2026-44439 | LookyLoo - PlaywrightCapture permits access to local files and internal network resources during page capture CWE-918 | - | - | 2026-05-13 |
All 4 known CVE vulnerabilities affecting PlaywrightCapture with full Chinese analysis, references, and POCs where available.