CWE-451
User Interface (UI) Misrepresentation of Critical Information
The user interface (UI) does not properly represent critical information to the user, allowing the information - or its source - to be obscured or spoofed. This is often a component in phishing attacks.
340 vulnerabilities with CWE-451
CVE-2025-62224
MEDIUM
Microsoft Edge for Android - Spoofing
CVSS 5.5
CVE-2025-65046
LOW
Microsoft Edge Chromium < 143.0.3650.88 - Spoofing
CVSS 3.1
CVE-2025-14744
MEDIUM
Firefox for iOS <144.0 - Info Disclosure
CVSS 6.5
CVE-2025-14023
LOW
LINE < 15.19.0 - User Interface Spoofing via Navigation State Inconsistency
CVSS 3.1
CVE-2025-14021
MEDIUM
LINE < 14.14.0 - Address Bar Spoofing via In-App Browser
CVSS 4.3
CVE-2025-14020
MEDIUM
LINE client for Android <14.20 - CSRF
CVSS 5.4
CVE-2025-14019
LOW
LINE client for Android <15.5 - Info Disclosure
CVSS 3.4
CVE-2025-46287
MEDIUM
Apple watchOS <26.2 - Info Disclosure
CVSS 6.5
CVE-2025-64667
MEDIUM
Microsoft Exchange Server - Info Disclosure
CVSS 5.3
CVE-2025-62223
MEDIUM
Microsoft Edge for iOS - Info Disclosure
CVSS 4.3
CVE-2025-31266
MEDIUM
Safari < 18.5 and macOS < 15.5 - Domain Spoofing via Pop-up Window Title
CVSS 4.3
CVE-2025-13082
MEDIUM
Drupal Drupal core <11.2.8 - Content Spoofing
CVSS 4.3
CVE-2025-13107
MEDIUM
Chrome < 140.0.7339.80 - UI Spoofing via Compositing
CVSS 4.3
CVE-2025-13102
MEDIUM
Google Chrome < 134.0.6998.35 - UI Spoofing via WebApp Installs
CVSS 4.3
CVE-2025-12729
MEDIUM
Google Chrome <142.0.7444.137 - XSS
CVSS 4.2
CVE-2025-12728
MEDIUM
Google Chrome <142.0.7444.137 - XSS
CVSS 4.2
CVE-2025-12446
MEDIUM
Google Chrome <142.0.7444.59 - CSRF
CVSS 4.2
CVE-2025-12435
MEDIUM
Google Chrome < 142.0.7444.59 - Security UI Spoofing via Omnibox
CVSS 5.4
CVE-2025-12911
MEDIUM
Google Chrome < 140.0.7339.80 - UI Spoofing via Crafted HTML Page
CVSS 4.3
CVE-2025-11213
MEDIUM
Google Chrome <141.0.7390.54 - SSRF
CVSS 6.3
CVE-2025-11212
MEDIUM
Google Chrome <141.0.7390.54 - SSRF
CVSS 6.3
CVE-2025-11208
MEDIUM
Google Chrome < 141.0.7390.54 - UI Spoofing via Crafted HTML Page
CVSS 6.3
CVE-2025-11720
HIGH
Firefox < 144.0 - User Interface Misrepresentation of Critical Information in Android Custom Tab
CVSS 8.1
CVE-2025-11718
MEDIUM
Firefox < 144.0 - User Interface Misrepresentation via Fake Address Bar on Android
CVSS 6.5
CVE-2025-10290
MEDIUM
Mozilla Focus for iOS < 143.0 - User Interface Misrepresentation via Contextual Menu URL Spoofing
CVSS 6.5
Details
Vulnerabilities
340