Описание
A lack of CORS checks in Blink in Google Chrome prior to 66.0.3359.117 allowed a remote attacker to leak limited cross-origin data via a crafted HTML page.
Дополнительная информация
Статус:
Moderate
https://bugzilla.redhat.com/show_bug.cgi?id=1568777chromium-browser: CORS bypass in ServiceWorker
6.5 Medium
CVSS3
Связанные уязвимости
CVSS3: 6.5
ubuntu
больше 6 лет назад
A lack of CORS checks in Blink in Google Chrome prior to 66.0.3359.117 allowed a remote attacker to leak limited cross-origin data via a crafted HTML page.
CVSS3: 6.5
nvd
больше 6 лет назад
A lack of CORS checks in Blink in Google Chrome prior to 66.0.3359.117 allowed a remote attacker to leak limited cross-origin data via a crafted HTML page.
CVSS3: 6.5
debian
больше 6 лет назад
A lack of CORS checks in Blink in Google Chrome prior to 66.0.3359.117 ...
CVSS3: 6.5
github
около 3 лет назад
A lack of CORS checks in Blink in Google Chrome prior to 66.0.3359.117 allowed a remote attacker to leak limited cross-origin data via a crafted HTML page.
6.5 Medium
CVSS3