CWE-618: Exposed Unsafe ActiveX Method
An ActiveX control is intended for use in a web browser, but it exposes dangerous methods that perform actions that are outside of the browser's security model (e.g. the zone or domain).
1 tracked CVEs are classified under this weakness.
Highest-risk vulnerabilities
- CVE-2025-0118 — GlobalProtect App: Execution of Unsafe ActiveX Control Vulnerability
Recently published
- CVE-2025-0118 — GlobalProtect App: Execution of Unsafe ActiveX Control Vulnerability