Описание
Insufficient data validation in Blink in Google Chrome prior to 76.0.3809.87 allowed a remote attacker to bypass anti-clickjacking policy via a crafted HTML page.
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | released | 76.0.3809.87-0ubuntu0.18.04.1 |
| devel | released | 77.0.3865.120-0ubuntu2 |
| disco | released | 76.0.3809.87-0ubuntu0.19.04.1 |
| eoan | released | 77.0.3865.120-0ubuntu1.19.10.1 |
| esm-infra-legacy/trusty | DNE | |
| precise/esm | DNE | |
| trusty | ignored | end of standard support |
| trusty/esm | DNE | |
| upstream | released | 76.0.3809.87 |
| xenial | released | 76.0.3809.87-0ubuntu0.16.04.1 |
Показывать по
Ссылки на источники
EPSS
4.3 Medium
CVSS2
4.3 Medium
CVSS3
Связанные уязвимости
Insufficient data validation in Blink in Google Chrome prior to 76.0.3809.87 allowed a remote attacker to bypass anti-clickjacking policy via a crafted HTML page.
Insufficient data validation in Blink in Google Chrome prior to 76.0.3809.87 allowed a remote attacker to bypass anti-clickjacking policy via a crafted HTML page.
Insufficient data validation in Blink in Google Chrome prior to 76.0.3 ...
Insufficient data validation in Blink in Google Chrome prior to 76.0.3809.87 allowed a remote attacker to bypass anti-clickjacking policy via a crafted HTML page.
Уязвимость ядра отображения веб-страниц Blink браузера Google Chrome, связанная с неправильным ограничением отображаемых фреймов пользовательского интерфейса, позволяющая нарушителю нарушить целостность данных
EPSS
4.3 Medium
CVSS2
4.3 Medium
CVSS3