Описание
Insufficient validation of untrusted input in Extensions in Google Chrome prior to 135.0.7049.52 allowed a remote attacker to perform privilege escalation via a crafted HTML page. (Chromium security severity: Medium)
Релиз | Статус | Примечание |
---|---|---|
devel | not-affected | code not present |
esm-apps/noble | not-affected | code not present |
esm-infra/focal | DNE | focal was not-affected [code not present] |
focal | not-affected | code not present |
jammy | not-affected | code not present |
noble | not-affected | code not present |
oracular | not-affected | code not present |
upstream | released |
Показывать по
EPSS
6.5 Medium
CVSS3
Связанные уязвимости
Insufficient validation of untrusted input in Extensions in Google Chrome prior to 135.0.7049.52 allowed a remote attacker to perform privilege escalation via a crafted HTML page. (Chromium security severity: Medium)
Chromium: CVE-2025-3070 Insufficient validation of untrusted input in Extensions
Insufficient validation of untrusted input in Extensions in Google Chr ...
Insufficient validation of untrusted input in Extensions in Google Chrome prior to 135.0.7049.52 allowed a remote attacker to perform privilege escalation via a crafted HTML page. (Chromium security severity: Medium)
Уязвимость компонента Extensions браузеров Google Chrome и Microsoft Edge, позволяющая нарушителю повысить свои привилегии
EPSS
6.5 Medium
CVSS3