Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-6wg2-rhf8-jx86

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

Insufficient policy enforcement in DevTools in Google Chrome prior to 64.0.3282.119 allowed a remote attacker to potentially leak user local file data via a crafted Chrome Extension.

Insufficient policy enforcement in DevTools in Google Chrome prior to 64.0.3282.119 allowed a remote attacker to potentially leak user local file data via a crafted Chrome Extension.

EPSS

Процентиль: 76%
0.00936
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-200

Связанные уязвимости

CVSS3: 6.5
ubuntu
больше 7 лет назад

Insufficient policy enforcement in DevTools in Google Chrome prior to 64.0.3282.119 allowed a remote attacker to potentially leak user local file data via a crafted Chrome Extension.

CVSS3: 6.5
redhat
около 8 лет назад

Insufficient policy enforcement in DevTools in Google Chrome prior to 64.0.3282.119 allowed a remote attacker to potentially leak user local file data via a crafted Chrome Extension.

CVSS3: 6.5
nvd
больше 7 лет назад

Insufficient policy enforcement in DevTools in Google Chrome prior to 64.0.3282.119 allowed a remote attacker to potentially leak user local file data via a crafted Chrome Extension.

CVSS3: 6.5
debian
больше 7 лет назад

Insufficient policy enforcement in DevTools in Google Chrome prior to ...

suse-cvrf
около 8 лет назад

Security update for chromium

EPSS

Процентиль: 76%
0.00936
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-200