CVE-2022-32969
29.06.2022, 15:15
MetaMask before 10.11.3 might allow an attacker to access a user's secret recovery phrase because an input field is used for a BIP39 mnemonic, and Firefox and Chromium save such fields to disk in order to support the Restore Session feature, aka the Demonic issue.Enginsight
Vendor | Product | Version |
---|---|---|
metamask | metamask | 𝑥 < 10.11.3 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References