6.5 MEDIUM
- CVSS version (CVSS): 3.1
- Attack Vector (AV): Network (N)
- Attack Complexity (AC): Low (L)
- Privileges Required (PR): None (N)
- User Interaction (UI): Required (R)
- Scope (S): Unchanged (U)
- Confidentiality (C): None (N)
- Integrity (I): High (H)
- Availability (A): None (N)
- Modified Attack Vector (MAV): Network (N)
- Modified Attack Complexity (MAC): Low (L)
- Modified Privileges Required (MPR): None (N)
- Modified User Interaction (MUI): Required (R)
- Modified Confidentiality (MC): None (N)
- Modified Scope (MS): Unchanged (U)
- Modified Integrity (MI): High (H)
- Modified Availability (MA): None (N)
by @LeSuisse Activity log
- Created suggestion
-
@LeSuisse
ignored
27 packages
- netflix
- mkchromecast
- chrome-export
- go-chromecast
- xf86videoopenchrome
- chrome-token-signing
- chrome-pak-customizer
- curl-impersonate-chrome
- electron-chromedriver_33
- electron-chromedriver_34
- electron-chromedriver_35
- electron-chromedriver_36
- electron-chromedriver_37
- electron-chromedriver_38
- electron-chromedriver_39
- electron-chromedriver_40
- xorg.xf86videoopenchrome
- ocamlPackages.chrome-trace
- noto-fonts-monochrome-emoji
- python312Packages.pychromecast
- python313Packages.pychromecast
- python314Packages.pychromecast
- ocamlPackages_latest.chrome-trace
- python312Packages.undetected-chromedriver
- python313Packages.undetected-chromedriver
- python314Packages.undetected-chromedriver
- grafanaPlugins.ventura-psychrometric-panel
Inappropriate implementation in PictureInPicture in Google Chrome prior to 145.0.7632.45 …
Inappropriate implementation in PictureInPicture in Google Chrome prior to 145.0.7632.45 allowed a remote attacker who convinced a user to engage in specific UI gestures to perform UI spoofing via a crafted HTML page. (Chromium security severity: Medium)
References
Affected products
- <145.0.7632.45
Matching in nixpkgs
pkgs.chromedriver
WebDriver server for running Selenium tests on Chrome
-
nixos-unstable 144.0.7559.132
- nixpkgs-unstable 144.0.7559.132
- nixos-unstable-small 144.0.7559.132
pkgs.google-chrome
Freeware web browser developed by Google
-
nixos-unstable 144.0.7559.132
- nixpkgs-unstable 144.0.7559.132
- nixos-unstable-small 144.0.7559.132
pkgs.undetected-chromedriver
Custom Selenium ChromeDriver that passes all bot mitigation systems
-
nixos-unstable 144.0.7559.132
- nixpkgs-unstable 144.0.7559.132
- nixos-unstable-small 144.0.7559.132
Ignored packages (27)
pkgs.netflix
Open Netflix in Google Chrome app mode
pkgs.mkchromecast
Cast macOS and Linux Audio/Video to your Google Cast and Sonos Devices
-
nixos-unstable 2025-12-21
- nixpkgs-unstable 2025-12-21
- nixos-unstable-small 2025-12-21
pkgs.chrome-export
Scripts to save Google Chrome's bookmarks and history as HTML bookmarks files
pkgs.go-chromecast
CLI for Google Chromecast, Home devices and Cast Groups
pkgs.xf86videoopenchrome
VIA Technologies UniChrome and Chrome9 IGP video driver for the Xorg X server
pkgs.chrome-token-signing
Chrome and Firefox extension for signing with your eID on the web
pkgs.chrome-pak-customizer
Simple batch tool to customize pak files in chrome or chromium-based browser
-
nixos-unstable 2.0-unstable-2021-06-24
- nixpkgs-unstable 2.0-unstable-2021-06-24
- nixos-unstable-small 2.0-unstable-2021-06-24
pkgs.curl-impersonate-chrome
None
pkgs.electron-chromedriver_33
None
pkgs.electron-chromedriver_34
None
pkgs.electron-chromedriver_35
None
pkgs.electron-chromedriver_36
None
pkgs.electron-chromedriver_37
WebDriver server for running Selenium tests on Chrome
pkgs.electron-chromedriver_38
WebDriver server for running Selenium tests on Chrome
pkgs.electron-chromedriver_39
WebDriver server for running Selenium tests on Chrome
pkgs.electron-chromedriver_40
WebDriver server for running Selenium tests on Chrome
pkgs.xorg.xf86videoopenchrome
None
pkgs.ocamlPackages.chrome-trace
Chrome trace event generation library
pkgs.noto-fonts-monochrome-emoji
Monochrome emoji font
pkgs.python312Packages.pychromecast
None
pkgs.python313Packages.pychromecast
Library for Python to communicate with the Google Chromecast
pkgs.python314Packages.pychromecast
Library for Python to communicate with the Google Chromecast
pkgs.ocamlPackages_latest.chrome-trace
Chrome trace event generation library
pkgs.python313Packages.undetected-chromedriver
Python library for the custom Selenium ChromeDriver that passes all bot mitigation systems
pkgs.python314Packages.undetected-chromedriver
Python library for the custom Selenium ChromeDriver that passes all bot mitigation systems
pkgs.grafanaPlugins.ventura-psychrometric-panel
Grafana plugin to display air conditions on a psychrometric chart
Package maintainers
-
@emilylange Emily Lange <nix@emilylange.de>
-
@networkException networkException <nix@nwex.de>
-
@iedame Rafael Ieda <git@ieda.me>
-
@mdaniels5757 Michael Daniels <nix@mdaniels.me>