Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-mj5c-m7rm-67v6

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The ContainerNode::parserRemoveChild function in core/dom/ContainerNode.cpp in the HTML parser in Blink, as used in Google Chrome before 42.0.2311.90, allows remote attackers to bypass the Same Origin Policy via a crafted HTML document with an IFRAME element.

The ContainerNode::parserRemoveChild function in core/dom/ContainerNode.cpp in the HTML parser in Blink, as used in Google Chrome before 42.0.2311.90, allows remote attackers to bypass the Same Origin Policy via a crafted HTML document with an IFRAME element.

EPSS

Процентиль: 78%
0.01132
Низкий

Связанные уязвимости

ubuntu
почти 11 лет назад

The ContainerNode::parserRemoveChild function in core/dom/ContainerNode.cpp in the HTML parser in Blink, as used in Google Chrome before 42.0.2311.90, allows remote attackers to bypass the Same Origin Policy via a crafted HTML document with an IFRAME element.

redhat
почти 11 лет назад

The ContainerNode::parserRemoveChild function in core/dom/ContainerNode.cpp in the HTML parser in Blink, as used in Google Chrome before 42.0.2311.90, allows remote attackers to bypass the Same Origin Policy via a crafted HTML document with an IFRAME element.

nvd
почти 11 лет назад

The ContainerNode::parserRemoveChild function in core/dom/ContainerNode.cpp in the HTML parser in Blink, as used in Google Chrome before 42.0.2311.90, allows remote attackers to bypass the Same Origin Policy via a crafted HTML document with an IFRAME element.

debian
почти 11 лет назад

The ContainerNode::parserRemoveChild function in core/dom/ContainerNod ...

fstec
почти 11 лет назад

Уязвимость браузера Google Chrome, позволяющая удаленному нарушителю обойти правила ограничения домена

EPSS

Процентиль: 78%
0.01132
Низкий