[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-CVE-2016-5148":6},{"stargazers_count":4,"fetched_at":5},7,"2026-06-05T08:55:32.481Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":44,"aliases":45,"duplicate_of":9,"upstream":46,"downstream":47,"duplicates":68,"related":69,"reserved_at":9,"published_at":76,"modified_at":77,"state":78,"summary":79,"references_raw":88,"kevs":147,"epss":148,"epss_history":151,"metrics":412,"affected":423},"CVE-2016-5148","Cross-site scripting (XSS) vulnerability in Blink, as used in Google Chrome before 53.0.2785.89 on Windows and OS X and before 53.0.2785.92 on Linux, allows remote attackers to inject arbitrary web script or HTML via vectors related to widget updates, aka \"Universal XSS (UXSS).\"",null,[11],{"_key":12,"id":12,"name":13,"description":14,"type":15,"status":16,"abstraction":17,"likelihood_of_exploit":18,"capec":19},"CWE-79","Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')","The product does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users.","weakness","Stable","Base","High",[20,24,28,32,36,40],{"id":21,"name":22,"techniques":23},"CAPEC-209","XSS Using MIME Type Mismatch",[],{"id":25,"name":26,"techniques":27},"CAPEC-588","DOM-Based XSS",[],{"id":29,"name":30,"techniques":31},"CAPEC-591","Reflected XSS",[],{"id":33,"name":34,"techniques":35},"CAPEC-592","Stored XSS",[],{"id":37,"name":38,"techniques":39},"CAPEC-63","Cross-Site Scripting (XSS)",[],{"id":41,"name":42,"techniques":43},"CAPEC-85","AJAX Footprinting",[],[],[],[],[48,50,52,54,56,58,60,62,64,66],{"_key":49},"RHSA-2016:1854",{"_key":51},"SUSE-SU-2016:2250-1",{"_key":53},"SUSE-SU-2016:2251-1",{"_key":55},"OPENSUSE-SU-2016:2250-1",{"_key":57},"OPENSUSE-SU-2024:10171-1",{"_key":59},"OPENSUSE-SU-2024:12948-1",{"_key":61},"DSA-3660-1",{"_key":63},"MGASA-2016-0309",{"_key":65},"UBUNTU-CVE-2016-5148",{"_key":67},"USN-3058-1",[],[70,71,72,73,74,75],{"_key":51},{"_key":53},{"_key":55},{"_key":57},{"_key":59},{"_key":63},"2016-09-11T10:00:00.000Z","2024-08-06T00:53:47.871Z","Modified",{"cisa_kev":80,"cisa_ransomware":80,"cisa_vendor":9,"epss_severity":81,"epss_score":82,"severity":83,"severity_score":84,"severity_version":85,"severity_source":86,"severity_vector":87,"severity_status":78},false,"low",0.00454,"medium",6.1,"v3.0","nvd","CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N",[89,96,101,105,111,116,120,124,128,133,138,142],{"url":90,"sources":91,"tags":93},"http://lists.opensuse.org/opensuse-security-announce/2016-09/msg00003.html",[92,86],"cve.org",[94,95],"Vendor Advisory","X Refsource SUSE",{"url":97,"sources":98,"tags":99},"https://googlechromereleases.blogspot.com/2016/08/stable-channel-update-for-desktop_31.html",[92,86],[100],"X Refsource CONFIRM",{"url":102,"sources":103,"tags":104},"http://lists.opensuse.org/opensuse-security-announce/2016-09/msg00004.html",[92,86],[94,95],{"url":106,"sources":107,"tags":108},"http://www.securityfocus.com/bid/92717",[92,86],[109,110],"VDB Entry","X Refsource BID",{"url":112,"sources":113,"tags":114},"http://www.securitytracker.com/id/1036729",[92,86],[109,115],"X Refsource SECTRACK",{"url":117,"sources":118,"tags":119},"https://codereview.chromium.org/2134113002",[92,86],[100],{"url":121,"sources":122,"tags":123},"http://lists.opensuse.org/opensuse-updates/2016-09/msg00073.html",[92,86],[94,95],{"url":125,"sources":126,"tags":127},"https://crbug.com/621362",[92,86],[100],{"url":129,"sources":130,"tags":131},"http://www.debian.org/security/2016/dsa-3660",[92,86],[94,132],"X Refsource DEBIAN",{"url":134,"sources":135,"tags":136},"https://security.gentoo.org/glsa/201610-09",[92,86],[94,137],"X Refsource GENTOO",{"url":139,"sources":140,"tags":141},"http://lists.opensuse.org/opensuse-security-announce/2016-09/msg00008.html",[92,86],[94,95],{"url":143,"sources":144,"tags":145},"http://rhn.redhat.com/errata/RHSA-2016-1854.html",[92,86],[94,146],"X Refsource REDHAT",[],{"date":149,"score":82,"percentile":150},"2026-06-04",0.6413,[152,156,159,162,165,168,171,174,176,179,182,185,188,191,194,197,200,203,206,209,212,214,217,220,222,225,228,231,234,237,240,242,245,247,249,252,255,258,261,264,267,269,272,275,278,281,284,287,290,293,295,298,301,303,306,309,311,314,317,320,323,325,328,331,334,337,340,343,346,348,351,354,358,361,364,367,370,373,376,379,382,385,388,391,394,397,400,403,406,409],{"date":153,"score":154,"percentile":155},"2025-11-04",0.0067,0.70532,{"date":157,"score":154,"percentile":158},"2025-11-05",0.70517,{"date":160,"score":154,"percentile":161},"2025-11-06",0.70515,{"date":163,"score":154,"percentile":164},"2025-11-07",0.7053,{"date":166,"score":154,"percentile":167},"2025-11-08",0.70531,{"date":169,"score":154,"percentile":170},"2025-11-09",0.70524,{"date":172,"score":154,"percentile":173},"2025-11-10",0.70509,{"date":175,"score":154,"percentile":158},"2025-11-11",{"date":177,"score":154,"percentile":178},"2025-11-12",0.7054,{"date":180,"score":154,"percentile":181},"2025-11-13",0.70547,{"date":183,"score":154,"percentile":184},"2025-11-14",0.70554,{"date":186,"score":154,"percentile":187},"2025-11-15",0.70555,{"date":189,"score":154,"percentile":190},"2025-11-16",0.70551,{"date":192,"score":154,"percentile":193},"2025-11-17",0.70546,{"date":195,"score":154,"percentile":196},"2025-11-18",0.6902,{"date":198,"score":154,"percentile":199},"2025-11-19",0.69027,{"date":201,"score":154,"percentile":202},"2025-11-20",0.69033,{"date":204,"score":154,"percentile":205},"2025-11-21",0.70567,{"date":207,"score":154,"percentile":208},"2025-11-22",0.70556,{"date":210,"score":154,"percentile":211},"2025-11-23",0.70538,{"date":213,"score":154,"percentile":167},"2025-11-24",{"date":215,"score":154,"percentile":216},"2025-11-25",0.70534,{"date":218,"score":154,"percentile":219},"2025-11-26",0.70539,{"date":221,"score":154,"percentile":219},"2025-11-27",{"date":223,"score":154,"percentile":224},"2025-11-28",0.70528,{"date":226,"score":154,"percentile":227},"2025-11-29",0.70516,{"date":229,"score":154,"percentile":230},"2025-11-30",0.70508,{"date":232,"score":154,"percentile":233},"2025-12-01",0.70652,{"date":235,"score":154,"percentile":236},"2025-12-02",0.70663,{"date":238,"score":154,"percentile":239},"2025-12-03",0.70662,{"date":241,"score":154,"percentile":161},"2025-12-04",{"date":243,"score":154,"percentile":244},"2025-12-05",0.70527,{"date":246,"score":154,"percentile":167},"2025-12-06",{"date":248,"score":154,"percentile":164},"2025-12-07",{"date":250,"score":154,"percentile":251},"2025-12-08",0.70535,{"date":253,"score":154,"percentile":254},"2025-12-09",0.70566,{"date":256,"score":154,"percentile":257},"2025-12-10",0.70601,{"date":259,"score":154,"percentile":260},"2025-12-11",0.70623,{"date":262,"score":154,"percentile":263},"2025-12-12",0.70649,{"date":265,"score":154,"percentile":266},"2025-12-13",0.7065,{"date":268,"score":154,"percentile":266},"2025-12-14",{"date":270,"score":154,"percentile":271},"2025-12-15",0.70645,{"date":273,"score":154,"percentile":274},"2025-12-16",0.70653,{"date":276,"score":154,"percentile":277},"2025-12-17",0.70669,{"date":279,"score":154,"percentile":280},"2025-12-18",0.70693,{"date":282,"score":154,"percentile":283},"2025-12-19",0.70708,{"date":285,"score":154,"percentile":286},"2025-12-20",0.70705,{"date":288,"score":154,"percentile":289},"2025-12-21",0.70698,{"date":291,"score":154,"percentile":292},"2025-12-22",0.70697,{"date":294,"score":154,"percentile":292},"2025-12-23",{"date":296,"score":154,"percentile":297},"2025-12-24",0.70706,{"date":299,"score":154,"percentile":300},"2025-12-25",0.70731,{"date":302,"score":154,"percentile":300},"2025-12-26",{"date":304,"score":154,"percentile":305},"2025-12-27",0.7077,{"date":307,"score":154,"percentile":308},"2025-12-28",0.70702,{"date":310,"score":154,"percentile":289},"2025-12-29",{"date":312,"score":154,"percentile":313},"2025-12-30",0.70712,{"date":315,"score":154,"percentile":316},"2025-12-31",0.70736,{"date":318,"score":154,"percentile":319},"2026-01-01",0.70892,{"date":321,"score":154,"percentile":322},"2026-01-02",0.70886,{"date":324,"score":154,"percentile":322},"2026-01-03",{"date":326,"score":154,"percentile":327},"2026-01-04",0.70738,{"date":329,"score":154,"percentile":330},"2026-01-05",0.70732,{"date":332,"score":154,"percentile":333},"2026-01-06",0.70737,{"date":335,"score":154,"percentile":336},"2026-01-07",0.70753,{"date":338,"score":154,"percentile":339},"2026-01-08",0.70772,{"date":341,"score":154,"percentile":342},"2026-01-09",0.70779,{"date":344,"score":154,"percentile":345},"2026-01-10",0.70777,{"date":347,"score":154,"percentile":339},"2026-01-11",{"date":349,"score":154,"percentile":350},"2026-01-12",0.70761,{"date":352,"score":154,"percentile":353},"2026-01-13",0.70759,{"date":355,"score":356,"percentile":357},"2026-01-14",0.00567,0.67889,{"date":359,"score":356,"percentile":360},"2026-01-15",0.67894,{"date":362,"score":356,"percentile":363},"2026-01-16",0.6791,{"date":365,"score":356,"percentile":366},"2026-01-17",0.67899,{"date":368,"score":356,"percentile":369},"2026-01-18",0.67888,{"date":371,"score":356,"percentile":372},"2026-01-19",0.67876,{"date":374,"score":356,"percentile":375},"2026-01-20",0.67885,{"date":377,"score":356,"percentile":378},"2026-01-21",0.67895,{"date":380,"score":356,"percentile":381},"2026-01-22",0.67905,{"date":383,"score":356,"percentile":384},"2026-01-23",0.67934,{"date":386,"score":356,"percentile":387},"2026-01-24",0.67945,{"date":389,"score":356,"percentile":390},"2026-01-25",0.67915,{"date":392,"score":356,"percentile":393},"2026-01-26",0.67906,{"date":395,"score":356,"percentile":396},"2026-01-27",0.67914,{"date":398,"score":356,"percentile":399},"2026-01-28",0.67925,{"date":401,"score":356,"percentile":402},"2026-01-29",0.67921,{"date":404,"score":356,"percentile":405},"2026-01-30",0.67928,{"date":407,"score":356,"percentile":408},"2026-01-31",0.67932,{"date":410,"score":356,"percentile":411},"2026-02-01",0.68083,[413],{"source":86,"cvss_v2_0":414,"cvss_v3_0":419,"cvss_v3_1":9,"cvss_v4_0":9},{"baseScore":415,"baseSeverity":9,"vectorString":416,"impactScore":417,"exploitabilityScore":418},4.3,"AV:N/AC:M/Au:N/C:N/I:P/A:N",2.9,8.6,{"baseScore":84,"baseSeverity":420,"vectorString":87,"impactScore":421,"exploitabilityScore":422},"MEDIUM",4.5,7.2,[424],{"ecosystem":9,"name":425,"vendor":426,"product":427,"cpe_part":428,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":429},"Chrome","google","chrome","a",[430],{"version":431,"is_range":432,"range_type":433,"version_start":9,"version_start_type":9,"version_end":434,"version_end_type":435,"fixed_in":9},"lte52.0.2743.116",true,"cpe","52.0.2743.116","including"]