Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-q3xm-785w-f7gp

Опубликовано: 30 апр. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 4.3

Описание

Blink in Google Chrome prior to 57.0.2987.98 for Mac, Windows, and Linux and 57.0.2987.108 for Android failed to correctly propagate CSP restrictions to local scheme pages, which allowed a remote attacker to bypass content security policy via a crafted HTML page, related to the unsafe-inline keyword.

Blink in Google Chrome prior to 57.0.2987.98 for Mac, Windows, and Linux and 57.0.2987.108 for Android failed to correctly propagate CSP restrictions to local scheme pages, which allowed a remote attacker to bypass content security policy via a crafted HTML page, related to the unsafe-inline keyword.

EPSS

Процентиль: 69%
0.00606
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-281

Связанные уязвимости

CVSS3: 4.3
ubuntu
почти 9 лет назад

Blink in Google Chrome prior to 57.0.2987.98 for Mac, Windows, and Linux and 57.0.2987.108 for Android failed to correctly propagate CSP restrictions to local scheme pages, which allowed a remote attacker to bypass content security policy via a crafted HTML page, related to the unsafe-inline keyword.

CVSS3: 6.5
redhat
почти 9 лет назад

Blink in Google Chrome prior to 57.0.2987.98 for Mac, Windows, and Linux and 57.0.2987.108 for Android failed to correctly propagate CSP restrictions to local scheme pages, which allowed a remote attacker to bypass content security policy via a crafted HTML page, related to the unsafe-inline keyword.

CVSS3: 4.3
nvd
почти 9 лет назад

Blink in Google Chrome prior to 57.0.2987.98 for Mac, Windows, and Linux and 57.0.2987.108 for Android failed to correctly propagate CSP restrictions to local scheme pages, which allowed a remote attacker to bypass content security policy via a crafted HTML page, related to the unsafe-inline keyword.

CVSS3: 4.3
debian
почти 9 лет назад

Blink in Google Chrome prior to 57.0.2987.98 for Mac, Windows, and Lin ...

EPSS

Процентиль: 69%
0.00606
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-281