CWE-451

User Interface (UI) Misrepresentation of Critical Information

Parent: CWE-684 - Incorrect Provision of Specified Functionality

The user interface (UI) does not properly represent critical information to the user, allowing the information - or its source - to be obscured or spoofed. This is often a component in phishing attacks.

157 vulnerabilities with CWE-451
CVE-2026-2919 MEDIUM
Focus for iOS <148.2 - Open Redirect
CVSS 4.3
CVE-2025-68277 MEDIUM
OpenEMR <7.0.4 - Open Redirect
CVSS 5.0
CVE-2026-2634 CRITICAL
Firefox iOS <147.4 - Spoofing
CVSS 9.8
CVE-2026-26320 MEDIUM
OpenClaw macOS 2026.2.6-2026.2.13 - Command Injection
CVSS 6.5
CVE-2026-1658 MEDIUM
OpenText Directory Services 20.4.1-25.2 - Cache Poisoning
CVSS 5.3
CVE-2026-2032 MEDIUM
Firefox for iOS < 147.2.1 - SSRF
CVSS 4.3
CVE-2026-2323 MEDIUM
Google Chrome <145.0.7632.45 - XSS
CVSS 4.3
CVE-2026-2322 MEDIUM
Google Chrome <145.0.7632.45 - XSS
CVSS 5.4
CVE-2026-2320 MEDIUM
Google Chrome <145.0.7632.45 - XSS
CVSS 6.5
CVE-2026-2318 MEDIUM
Google Chrome <145.0.7632.45 - XSS
CVSS 6.5
CVE-2026-2316 MEDIUM
Google Chrome <145.0.7632.45 - XSS
CVSS 6.5
CVE-2026-21527 MEDIUM
Microsoft Exchange Server - Info Disclosure
CVSS 6.5
CVE-2026-0391 MEDIUM
Microsoft Edge for Android - Info Disclosure
CVSS 6.5
CVE-2026-20732 LOW
BIG-IP - Info Disclosure
CVSS 3.1
CVE-2026-0907 CRITICAL
Google Chrome <144.0.7559.59 - XSS
CVSS 9.8
CVE-2026-0906 CRITICAL
Google Chrome <144.0.7559.59 - XSS
CVSS 9.8
CVE-2026-0904 MEDIUM
Google Chrome <144.0.7559.59 - CSRF
CVSS 5.4
CVE-2026-0901 MEDIUM
Google Chrome <144.0.7559.59 - XSS
CVSS 5.4
CVE-2025-62224 MEDIUM
Microsoft Edge for Android - Spoofing
CVSS 5.5
CVE-2025-65046 LOW
Microsoft Edge Chromium - Authentication Bypass by Spoofing
CVSS 3.1
CVE-2025-14744 MEDIUM
Firefox for iOS <144.0 - Info Disclosure
CVSS 6.5
CVE-2025-14023 LOW
LINE client for iOS <15.19 - CSRF
CVSS 3.1
CVE-2025-14021 MEDIUM
LINE client for iOS <14.14 - XSS
CVSS 4.3
CVE-2025-14020 MEDIUM
LINE client for Android <14.20 - CSRF
CVSS 5.4
CVE-2025-14019 LOW
LINE client for Android <15.5 - Info Disclosure
CVSS 3.4
Details
Vulnerabilities 157