Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
Github GHSA |
GHSA-7mvr-c777-76hp | Playwright downloads and installs browsers without verifying the authenticity of the SSL certificate |
Fri, 21 Nov 2025 02:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper verification of cryptographic signature in GitHub allows an unauthorized attacker to perform spoofing over an adjacent network. | Improper verification of cryptographic signature in Github: Playwright allows an unauthorized attacker to perform spoofing over an adjacent network. |
Mon, 27 Oct 2025 22:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Github
Github github Microsoft azure Playwright |
|
| Vendors & Products |
Github
Github github Microsoft azure Playwright |
Mon, 27 Oct 2025 19:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Microsoft
Microsoft playwright |
|
| CPEs | cpe:2.3:a:microsoft:playwright:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Microsoft
Microsoft playwright |
Thu, 16 Oct 2025 00:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
| |
| Metrics |
threat_severity
|
threat_severity
|
Tue, 14 Oct 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 14 Oct 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper verification of cryptographic signature in GitHub allows an unauthorized attacker to perform spoofing over an adjacent network. | |
| Title | Playwright Spoofing Vulnerability | |
| Weaknesses | CWE-347 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: microsoft
Published:
Updated: 2026-02-22T17:24:58.049Z
Reserved: 2025-09-11T19:36:03.690Z
Link: CVE-2025-59288
Updated: 2025-10-14T19:44:50.771Z
Status : Modified
Published: 2025-10-14T17:16:11.837
Modified: 2025-11-21T03:16:09.550
Link: CVE-2025-59288
OpenCVE Enrichment
Updated: 2025-10-27T22:13:24Z
Github GHSA