CWE-451
User Interface (UI) Misrepresentation of Critical Information
The user interface (UI) does not properly represent critical information to the user, allowing the information - or its source - to be obscured or spoofed. This is often a component in phishing attacks.
340 vulnerabilities with CWE-451
CVE-2025-29796
MEDIUM
Microsoft Edge for iOS - Info Disclosure
CVSS 4.7
CVE-2025-3074
MEDIUM
Google Chrome < 135.0.7049.52 - UI Spoofing via Crafted HTML Page
CVSS 5.4
CVE-2025-3073
MEDIUM
Google Chrome < 135.0.7049.52 - UI Spoofing via Autofill
CVSS 5.4
CVE-2025-3072
MEDIUM
Google Chrome < 135.0.7049.52 - UI Spoofing via Custom Tabs
CVSS 5.4
CVE-2025-30467
MEDIUM
Safari < 18.4 - Address Bar Spoofing via Malicious Website
CVSS 4.3
CVE-2025-1922
MEDIUM
Google Chrome < 134.0.6998.35 - UI Spoofing via Crafted HTML Page
CVSS 4.3
CVE-2025-21259
MEDIUM
Microsoft Outlook < 4.2501.1 - Spoofing via User Interface Misrepresentation
CVSS 5.3
CVE-2025-21404
MEDIUM
Microsoft Edge Chromium < 133.0.3065.51 - Spoofing
CVSS 4.3
CVE-2025-21253
MEDIUM
Microsoft Edge for iOS and Android - User Interface Spoofing
CVSS 5.3
CVE-2025-0451
MEDIUM
Google Chrome < 133.0.6943.53 - UI Spoofing via Crafted Chrome Extension
CVSS 6.3
CVE-2025-0729
MEDIUM
TP-Link TL-SG108E <1.0.0 Build 20201208 Rel. 40304 - Clickjacking
CVSS 4.3
CVE-2025-21262
MEDIUM
Microsoft Edge (Chromium-based) - Info Disclosure
CVSS 5.4
CVE-2025-0446
MEDIUM
Google Chrome < 132.0.6834.83 - UI Spoofing via Crafted Chrome Extension
CVSS 4.3
CVE-2025-0435
MEDIUM
Google Chrome < 132.0.6834.83 - UI Spoofing via Crafted HTML Page
CVSS 6.5
CVE-2025-21314
MEDIUM
Windows SmartScreen - Spoofing
CVSS 6.5
CVE-2024-7021
MEDIUM
Google Chrome < 124.0.6367.60 - UI Spoofing via Autofill
CVSS 4.3
CVE-2024-13178
MEDIUM
Google Chrome < 128.0.6613.84 - UI Spoofing via Fullscreen Implementation
CVSS 4.3
CVE-2024-11919
MEDIUM
Google Chrome < 129.0.6668.58 - UI Spoofing via Crafted HTML Page
CVSS 4.3
CVE-2024-6429
MEDIUM
WSO2 API Manager and Identity Server - Content Spoofing via Error Message URL Parameter
CVSS 4.3
CVE-2024-39730
MEDIUM
IBM Datacap Navigator <9.1.7-9.1.9 - CSRF
CVSS 5.4
CVE-2024-9163
LOW
GitLab CE/EE <17.10.7-18.0.1 - Info Disclosure
CVSS 3.5
CVE-2024-54558
LOW
iPadOS < 18.0 - Clickjacking via Photo Library Access Prompt
CVSS 2.8
CVE-2024-55896
MEDIUM
IBM PowerHA SystemMirror - Info Disclosure
CVSS 5.4
CVE-2024-55889
MEDIUM
phpMyFAQ < 3.2.10 - Unauthenticated File Download via FAQ Record Iframe Embed
CVSS 4.9
CVE-2024-52271
HIGH
Documenso <1.8.0 - Content Spoofing
Details
Vulnerabilities
340