Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-mx8v-g7wp-95xg

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8.8

Описание

Insufficient policy enforcement in DevTools in Google Chrome prior to 64.0.3282.119 allowed a remote attacker to potentially leak user local file data via a crafted Chrome Extension.

Insufficient policy enforcement in DevTools in Google Chrome prior to 64.0.3282.119 allowed a remote attacker to potentially leak user local file data via a crafted Chrome Extension.

EPSS

Процентиль: 81%
0.01563
Низкий

8.8 High

CVSS3

Дефекты

CWE-200

Связанные уязвимости

CVSS3: 8.8
ubuntu
больше 7 лет назад

Insufficient policy enforcement in DevTools in Google Chrome prior to 64.0.3282.119 allowed a remote attacker to potentially leak user local file data via a crafted Chrome Extension.

CVSS3: 6.5
redhat
около 8 лет назад

Insufficient policy enforcement in DevTools in Google Chrome prior to 64.0.3282.119 allowed a remote attacker to potentially leak user local file data via a crafted Chrome Extension.

CVSS3: 8.8
nvd
больше 7 лет назад

Insufficient policy enforcement in DevTools in Google Chrome prior to 64.0.3282.119 allowed a remote attacker to potentially leak user local file data via a crafted Chrome Extension.

CVSS3: 8.8
debian
больше 7 лет назад

Insufficient policy enforcement in DevTools in Google Chrome prior to ...

suse-cvrf
около 8 лет назад

Security update for chromium

EPSS

Процентиль: 81%
0.01563
Низкий

8.8 High

CVSS3

Дефекты

CWE-200