CWE-451

User Interface (UI) Misrepresentation of Critical Information

Parent: CWE-684 - Incorrect Provision of Specified Functionality

The user interface (UI) does not properly represent critical information to the user, allowing the information - or its source - to be obscured or spoofed. This is often a component in phishing attacks.

230 vulnerabilities with CWE-451
CVE-2026-48851 LOW
PuTTY < 0.84 - User Interface (UI) Misrepresentation of Critical Information
CVSS 3.1
CVE-2026-9078 MEDIUM
Firefox iOS RTL Domain Rendering Issue in Link Preview
CVSS 5.4
CVE-2026-9110 MEDIUM
Google Chrome < 148.0.7778.179 - UI Spoofing via Crafted HTML Page
CVSS 4.2
CVE-2026-39309 MEDIUM
Trilium Notes: macOS TCC Bypass via Prompt Spoofing
CVSS 5.5
CVE-2026-8964 HIGH
Firefox < 151.0.0 and Thunderbird < 151.0.0 - Spoofing via Popup Blocker
CVSS 7.5
CVE-2026-8584 MEDIUM
Google Chrome on iOS < 148.0.7778.168 - UI Spoofing via Crafted HTML Page
CVSS 4.2
CVE-2026-8565 MEDIUM
Google Chrome < 148.0.7778.168 - UI Spoofing via Malicious Extension
CVSS 4.7
CVE-2026-8564 MEDIUM
Google Chrome < 148.0.7778.168 - User Interface Misrepresentation in Downloads
CVSS 4.2
CVE-2026-8561 MEDIUM
Google Chrome < 148.0.7778.168 - UI Spoofing via Fullscreen Security UI Misrepresentation
CVSS 5.4
CVE-2026-42891 MEDIUM
Microsoft Edge (Chromium-based) for Android Spoofing Vulnerability
CVSS 6.5
CVE-2026-40416 MEDIUM
Microsoft Edge (Chromium-based) for Android Spoofing Vulnerability
CVSS 4.3
CVE-2026-35429 MEDIUM
Microsoft Edge (Chromium-based) for Android Spoofing Vulnerability
CVSS 4.3
CVE-2026-34258 MEDIUM
Content Spoofing vulnerability in SAPUI5 (Search UI)
CVSS 4.7
CVE-2026-28964 HIGH
iOS and iPadOS < 26.5 - Unprotected User Data Exposure via UI State Misrepresentation
CVSS 7.5
CVE-2026-44659 MEDIUM
Zen Browser Mac - Address Bar Spoofing via Long Subdomain
CVSS 4.7
CVE-2026-8019 MEDIUM
Google Chrome < 148.0.7778.96 - UI Spoofing via Crafted HTML Page
CVSS 5.4
CVE-2026-8015 MEDIUM
Google Chrome < 148.0.7778.96 - UI Spoofing via Crafted HTML Page
CVSS 5.4
CVE-2026-8008 MEDIUM
Google Chrome < 148.0.7778.96 - UI Spoofing via Malicious Extension
CVSS 5.4
CVE-2026-8006 MEDIUM
Google Chrome < 148.0.7778.96 - UI Spoofing via Malicious Extension
CVSS 5.4
CVE-2026-7935 MEDIUM
Google Chrome < 148.0.7778.96 - UI Spoofing via Speech Feature
CVSS 5.4
CVE-2026-35371 LOW
uutils coreutils id Misleading Identity Reporting in Pretty Print Mode
CVSS 3.3
CVE-2026-3861 MEDIUM
LINE client for iOS < 26.3.0 - Denial of Service via In-App Browser URL Scheme Handling
CVSS 6.5
CVE-2026-33119 MEDIUM
Microsoft Edge (Chromium-based) for Android Spoofing Vulnerability
CVSS 5.4
CVE-2026-33118 MEDIUM
Microsoft Edge (Chromium-based) Spoofing Vulnerability
CVSS 4.3
CVE-2026-5906 MEDIUM
Google Chrome <147.0.7727.55 - Security UI Spoofing
CVSS 4.3
Details
Vulnerabilities 230