Darkreader is a browser extension that applies dark-mode styling to web content, with its vulnerability profile centered on the single product and characterized by information-disclosure and boundary-validation weaknesses such as exposure of resources to wrong security spheres, leakage of sensitive information to unauthorized actors, and origin validation errors. These classes reflect the extension's need to inject styles across arbitrary web pages while maintaining isolation between user data and page contexts. Current vulnerability counts, severity, and any exploitation activity are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Darkreader over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
Dark Reader is an accessibility browser extension that makes web pages colors dark. The dynamic dark mode feature of the extension works by analyzing the colors of web pages found | Mar 4, 2026 | 3.4 | 16 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Darkreader.
Media articles that mention a CVE ID that affects a product developed by Darkreader — matched by CVE ID, not by vendor name.