Skip to content
uXSS Vulnerability in DuckDuckGo Browser's AutoConsent JS Bridge Discovered

uXSS Vulnerability in DuckDuckGo Browser's AutoConsent JS Bridge Discovered

First seen 2 Mar 2026, 14:10 UTC • •

Article Content

Browse articles
ThreatCluster AI
ThreatCluster •March 12, 2026 at 16:10 UTC

A Universal Cross-Site Scripting (uXSS) vulnerability has been identified in the DuckDuckGo browser, specifically within the AutoConsent JavaScript bridge. This flaw allows attackers to exploit the bridge, potentially compromising user security. Users of the DuckDuckGo browser are affected by this vulnerability.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated 212d ago How this analysis works

Timeline

2026-03-02
Vulnerability reported in DuckDuckGo browser
Recent
Patch released for the uXSS flaw

More articles in this cluster (3)