CVE-2023-26081 (https://gitlab.gnome.org/GNOME/epiphany/-/merge_requests/1275): https://github.com/google/security-research/security/advisories/GHSA-mhhf-w9xw-pp9x In Epiphany (aka GNOME Web) through 43.0, untrusted web content can trick users into exfiltrating passwords, because autofill occurs in sandboxed contexts. Patches at above merge request, don't appear to be in any release.