Описание
Inappropriate implementation in Navigation in Google Chrome prior to 93.0.4577.63 allowed a remote attacker to leak cross-origin data via a crafted HTML page.
Inappropriate implementation in Navigation in Google Chrome prior to 93.0.4577.63 allowed a remote attacker to leak cross-origin data via a crafted HTML page.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2021-30615
- https://chromereleases.googleblog.com/2021/08/stable-channel-update-for-desktop_31.html
- https://crbug.com/1208614
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/5LVY4WIWTVVYKQMROJJS365TZBKEARCF
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/IPJPUSAWIJMQFBQQQYXAICLI4EKFQOH6
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/QW4R2K5HVJ4R6XDZYOJCCFPIN2XHNS3L
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-30615
Связанные уязвимости
CVSS3: 6.5
ubuntu
больше 4 лет назад
Chromium: CVE-2021-30615 Cross-origin data leak in Navigation
CVSS3: 6.5
nvd
больше 4 лет назад
Chromium: CVE-2021-30615 Cross-origin data leak in Navigation
CVSS3: 6.5
debian
больше 4 лет назад
Chromium: CVE-2021-30615 Cross-origin data leak in Navigation
CVSS3: 6.5
fstec
больше 4 лет назад
Уязвимость компонента Navigation браузеров Google Chrome и Microsoft Edge, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации