Описание
Insufficient policy enforcement in WebView in Google Chrome on Android prior to 88.0.4324.96 allowed a remote attacker to leak cross-origin data via a crafted HTML page.
Ссылки
- Release NotesVendor Advisory
- Issue TrackingPatchVendor Advisory
- Third Party Advisory
- Release NotesVendor Advisory
- Issue TrackingPatchVendor Advisory
- Third Party Advisory
Уязвимые конфигурации
Одновременно
EPSS
6.5 Medium
CVSS3
4.3 Medium
CVSS2
Дефекты
Связанные уязвимости
Insufficient policy enforcement in WebView in Google Chrome on Android prior to 88.0.4324.96 allowed a remote attacker to leak cross-origin data via a crafted HTML page.
Chromium CVE-2021-21136: Insufficient policy enforcement in WebView
Insufficient policy enforcement in WebView in Google Chrome on Android ...
Insufficient policy enforcement in WebView in Google Chrome on Android prior to 88.0.4324.96 allowed a remote attacker to leak cross-origin data via a crafted HTML page.
Уязвимость компонента для отображения веб-страниц WebView веб-браузера Google Chrome, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации
EPSS
6.5 Medium
CVSS3
4.3 Medium
CVSS2