Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hm9h-v525-4cgc

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The extension implementation in Google Chrome before 17.0.963.46 does not properly handle sandboxed origins, which might allow remote attackers to bypass the Same Origin Policy via a crafted extension.

The extension implementation in Google Chrome before 17.0.963.46 does not properly handle sandboxed origins, which might allow remote attackers to bypass the Same Origin Policy via a crafted extension.

EPSS

Процентиль: 29%
0.00104
Низкий

Дефекты

CWE-346

Связанные уязвимости

ubuntu
почти 14 лет назад

The extension implementation in Google Chrome before 17.0.963.46 does not properly handle sandboxed origins, which might allow remote attackers to bypass the Same Origin Policy via a crafted extension.

nvd
почти 14 лет назад

The extension implementation in Google Chrome before 17.0.963.46 does not properly handle sandboxed origins, which might allow remote attackers to bypass the Same Origin Policy via a crafted extension.

debian
почти 14 лет назад

The extension implementation in Google Chrome before 17.0.963.46 does ...

EPSS

Процентиль: 29%
0.00104
Низкий

Дефекты

CWE-346