Capricorn86 produces a focused web or application product, Happy DOM, that has disclosed vulnerabilities centered on information-handling and code-execution risks, specifically exposure of private data to unauthorized parties, code injection, and insertion of sensitive information into transmitted data. Treat this as a compact vendor profile; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Capricorn86 over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2026-33943CRITICAL Happy DOM is a JavaScript implementation of a web browser without its graphical user interface. In versions 15.10.0 through 20.8.7, a code injection vulnerability in `ECMAScriptMod | Mar 27, 2026 | 9.8 | 39 | NO | NO |
CVE-2026-34226HIGH Happy DOM is a JavaScript implementation of a web browser without its graphical user interface. Versions prior to 20.8.9 may attach cookies from the current page origin (`window.lo | Mar 27, 2026 | 7.5 | 29 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Capricorn86.
Media articles that mention a CVE ID that affects a product developed by Capricorn86 — matched by CVE ID, not by vendor name.