PoC-in-GitHub/2026/CVE-2026-0628.json
2026-02-01 03:45:07 +09:00

64 lines
No EOL
2.9 KiB
JSON

[
{
"id": 1129927025,
"name": "CVE-2026-0628-POC",
"full_name": "fevar54\/CVE-2026-0628-POC",
"owner": {
"login": "fevar54",
"id": 80516843,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/80516843?v=4",
"html_url": "https:\/\/github.com\/fevar54",
"user_view_type": "public"
},
"html_url": "https:\/\/github.com\/fevar54\/CVE-2026-0628-POC",
"description": "Prueba de concepto (PoC) para CVE-2026-0628, que demuestra la inyección de scripts en páginas privilegiadas mediante el uso de la etiqueta <webview> en Google Chrome. Esta vulnerabilidad, clasificada como CWE-862 (Missing Authorization), permite a una extensión maliciosa eludir políticas de seguridad en versiones anteriores a la 143.0.7499.192.",
"fork": false,
"created_at": "2026-01-07T19:29:28Z",
"updated_at": "2026-01-07T19:35:37Z",
"pushed_at": "2026-01-07T19:35:33Z",
"stargazers_count": 0,
"watchers_count": 0,
"has_discussions": false,
"forks_count": 0,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
"forks": 0,
"watchers": 0,
"score": 0,
"subscribers_count": 0
},
{
"id": 1146636584,
"name": "Dissecting-CVE-2026-0628-Chromium-Extension-Privilege-Escalation",
"full_name": "sastraadiwiguna-purpleeliteteaming\/Dissecting-CVE-2026-0628-Chromium-Extension-Privilege-Escalation",
"owner": {
"login": "sastraadiwiguna-purpleeliteteaming",
"id": 248769097,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/248769097?v=4",
"html_url": "https:\/\/github.com\/sastraadiwiguna-purpleeliteteaming",
"user_view_type": "public"
},
"html_url": "https:\/\/github.com\/sastraadiwiguna-purpleeliteteaming\/Dissecting-CVE-2026-0628-Chromium-Extension-Privilege-Escalation",
"description": "Origin CyberAnatomy Spoofing via Malicious WebView - Dissecting CVE-2026-0628 Chromium Extension Privilege Escalation This research provides a comprehensive technical dissection of CVE-2026-0628, a high-severity privilege escalation vulnerability (CVSS v3.1: 8.8) in Chromium's WebView policy enforcement mechanism. ",
"fork": false,
"created_at": "2026-01-31T12:31:00Z",
"updated_at": "2026-01-31T14:07:45Z",
"pushed_at": "2026-01-31T12:35:20Z",
"stargazers_count": 1,
"watchers_count": 1,
"has_discussions": false,
"forks_count": 0,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
"forks": 0,
"watchers": 1,
"score": 0,
"subscribers_count": 0
}
]