Описание
Inappropriate implementation in Content Security Policy in Google Chrome prior to 122.0.6261.57 allowed a remote attacker to bypass content security policy via a crafted HTML page. (Chromium security severity: Medium)
Ссылки
- ExploitIssue Tracking
- Release Notes
- Mailing List
- Mailing List
- Release Notes
- ExploitIssue Tracking
- Mailing List
- Mailing List
Уязвимые конфигурации
Одно из
EPSS
5.4 Medium
CVSS3
8.8 High
CVSS3
Дефекты
Связанные уязвимости
Inappropriate implementation in Content Security Policy in Google Chrome prior to 122.0.6261.57 allowed a remote attacker to bypass content security policy via a crafted HTML page. (Chromium security severity: Medium)
Chromium: CVE-2024-1672 Inappropriate implementation in Content Security Policy
Inappropriate implementation in Content Security Policy in Google Chro ...
Inappropriate implementation in Content Security Policy in Google Chrome prior to 122.0.6261.57 allowed a remote attacker to bypass content security policy via a crafted HTML page. (Chromium security severity: Medium)
Уязвимость механизма CSP (Content Security Policy) браузера Google Chrome и Microsoft Edge, позволяющая нарушителю обойти существующие ограничения безопасности
EPSS
5.4 Medium
CVSS3
8.8 High
CVSS3