Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2782-hv4h-h26m

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 5.4

Описание

Parsing documents as HTML in Downloads in Google Chrome prior to 66.0.3359.117 allowed a remote attacker to cause Chrome to execute scripts via a local non-HTML page.

Parsing documents as HTML in Downloads in Google Chrome prior to 66.0.3359.117 allowed a remote attacker to cause Chrome to execute scripts via a local non-HTML page.

EPSS

Процентиль: 76%
0.00944
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-20

Связанные уязвимости

CVSS3: 5.4
ubuntu
почти 7 лет назад

Parsing documents as HTML in Downloads in Google Chrome prior to 66.0.3359.117 allowed a remote attacker to cause Chrome to execute scripts via a local non-HTML page.

CVSS3: 4.3
redhat
больше 7 лет назад

Parsing documents as HTML in Downloads in Google Chrome prior to 66.0.3359.117 allowed a remote attacker to cause Chrome to execute scripts via a local non-HTML page.

CVSS3: 5.4
nvd
почти 7 лет назад

Parsing documents as HTML in Downloads in Google Chrome prior to 66.0.3359.117 allowed a remote attacker to cause Chrome to execute scripts via a local non-HTML page.

CVSS3: 5.4
debian
почти 7 лет назад

Parsing documents as HTML in Downloads in Google Chrome prior to 66.0. ...

suse-cvrf
больше 7 лет назад

Security update for chromium

EPSS

Процентиль: 76%
0.00944
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-20