Описание
Inappropriate implementation in Extensions in Google Chrome prior to 140.0.7339.80 allowed a remote attacker to bypass content security policy via a crafted HTML page. (Chromium security severity: Medium)
Пакеты
Пакет | Статус | Версия исправления | Релиз | Тип |
---|---|---|---|---|
chromium | fixed | 140.0.7339.80-1 | package | |
chromium | end-of-life | bullseye | package |
EPSS
Процентиль: 14%
0.00046
Низкий
Связанные уязвимости
CVSS3: 8.8
ubuntu
14 дней назад
Inappropriate implementation in Extensions in Google Chrome prior to 140.0.7339.80 allowed a remote attacker to bypass content security policy via a crafted HTML page. (Chromium security severity: Medium)
CVSS3: 8.8
nvd
14 дней назад
Inappropriate implementation in Extensions in Google Chrome prior to 140.0.7339.80 allowed a remote attacker to bypass content security policy via a crafted HTML page. (Chromium security severity: Medium)
EPSS
Процентиль: 14%
0.00046
Низкий