Boletines de Vulnerabilidades |
CVE-2026-102333 |
|
| Software afectado | HTTPD |
| httpdbg before 2.2.1 fails to validate URL schemes in recorded HTTP request URLs rendered as clickable links in the web interface. Attackers controlling traffic recorded by httpdbg can supply javascript: scheme URLs that execute malicious scripts in the application origin when clicked, allowing access to captured request and response data including headers and tokens. | |
Link: |
|
| https://nvd.nist.gov/vuln/detail/CVE-2026-102333 | |






