Voltar para o portal de segurança
XSS in Trezor Connect
Reportado em August 3, 2020
In August 2020, we were contacted by Gamer7112, a security researcher, who reported XSS issues in Trezor Connect. The issues were fixed and deployed to production shortly after.
Trezor Connect
Vulnerabilidades resolvidas
Reportado pela comunidade. Investigado. Resolvido. Porque sua segurança nunca é opcional.
- Biometric Verification bypassed in Trezor Suite with external monitor9 de março de 2026
- Inability to cancel certain flows on pre-production firmware31 de outubro de 2025
- Fix side-channel in BIP-39 mnemonic processing when unlocked24 de setembro de 2025
- Donjon's Trezor Safe 3 evaluation12 de novembro de 2024
- Missing confirmation in the ECDHSessionKey call26 de novembro de 2023
- XSS in Trezor Connect legacy versions7 de fevereiro de 2023