Описание
Insufficient validation of untrusted input in Workers in Google Chrome prior to 151.0.7922.109 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted HTML page. (Chromium security severity: High)
A flaw was found in Google Chrome. Insufficient validation of untrusted input in the Workers component could allow a remote attacker, who has already compromised the renderer process, to bypass site isolation. This could enable the attacker to access sensitive information or further compromise the user's system.
Отчет
Important: This flaw in Chromium-based browsers allows a remote attacker to bypass site isolation. Exploitation requires a compromised renderer process and a specially crafted HTML page, enabling the attacker to circumvent a critical security boundary designed to protect user data.
Дополнительная информация
Статус:
8.7 High
CVSS3
Связанные уязвимости
Insufficient validation of untrusted input in Workers in Google Chrome prior to 151.0.7922.109 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted HTML page. (Chromium security severity: High)
Insufficient validation of untrusted input in Workers in Google Chrome prior to 151.0.7922.109 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted HTML page. (Chromium security severity: High)
Insufficient validation of untrusted input in Workers in Google Chrome ...
Insufficient validation of untrusted input in Workers in Google Chrome prior to 151.0.7922.109 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted HTML page. (Chromium security severity: High)
8.7 High
CVSS3