Cross Site Scripting (XSS) vulnerability in uBlock Origin extension before 1.41.1 allows remote attackers to run arbitrary code via a spoofed 'MessageSender.url' to the browser renderer process.
| Software | From | Fixed in |
|---|---|---|
| ublock_origin_project / ublock_origin | - | 1.41.1 |