openai CVE Vulnerabilities & CVE List (2)

Products (CPE): — CVEs: 2

openai vulnerability overview

This page aggregates publicly disclosed CVE and security risk information related to openai, with CVSS, EPSS, publication dates, and vulnerability intelligence data to help assess potential risk and remediation priority.

Vulnerability distribution trend (last 24 months)

Showing 12 of 2 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2025-7021 Fullscreen API Spoofing and UI Redressing in the handling of Fullscreen API and UI rendering in OpenAI Operator SaaS on Web allows a remote attacker to capture sensitive user input (e.g., login credentials, email addresses) via displaying a deceptive fullscreen interface with overlaid fake browser controls and a distracting element (like a cookie consent screen) to obscure fullscreen notifications, tricking the user into interacting with the malicious site. [email protected] 6.9 0.30% 2025-07-10 2026-06-17
CVE-2025-43714 The ChatGPT system through 2025-03-30 performs inline rendering of SVG documents (instead of, for example, rendering them as text inside a code block), which enables HTML injection within most modern graphical web browsers. [email protected] 6.5 0.38% 2025-05-19 2026-06-17
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence