ublockorigin records
3 published records for vendor ublockorigin.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 1
- With a fix record
- 66.7%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-20 Improper Input Validation1
- CWE-400 Uncontrolled Resource Consumption1
- CWE-674 Uncontrolled Recursion1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
3 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
37Monitor | CVE-2019-11595No exploit | In uBlock before 0.9.5.15, the $rewrite filter option allows filter-list maintainers to run arbitrary code in a client-side session when a wublockorigin · ublock origin · CWE-20 | Critical9.0 | — | 2.4% | Apr 29, 2019 |
30Monitor | CVE-2021-36773No exploit | uBlock Origin before 1.36.2 and nMatrix before 4.4.9 support an arbitrary depth of parameter nesting for strict blocking, which allows craftsciruby · nmatrix · CWE-674 | High7.5 | — | 1.3% | Jul 18, 2021 |
9Monitor | CVE-2025-4215No exploit | gorhill uBlock Origin UI 1p-filters.js currentStateChanged redosublockorigin · ublock origin · CWE-400 | Low2.3 | — | 0.8% | May 2, 2025 |
- CVE-2019-1159537Monitor
In uBlock before 0.9.5.15, the $rewrite filter option allows filter-list maintainers to run arbitrary code in a client-side session when a w
CriticalCVSS 9.0No exploitEPSS 2%ublockorigin · ublock originApr 29, 2019
- CVE-2021-3677330Monitor
uBlock Origin before 1.36.2 and nMatrix before 4.4.9 support an arbitrary depth of parameter nesting for strict blocking, which allows craft
HighCVSS 7.5No exploitEPSS 1%sciruby · nmatrixJul 18, 2021
- CVE-2025-42159Monitor
gorhill uBlock Origin UI 1p-filters.js currentStateChanged redos
LowCVSS 2.3No exploitEPSS 1%ublockorigin · ublock originMay 2, 2025