CVE-2016-1657
—CVSS 3.0
4.3 medium
EPSS
1%p71
Published
()
Modified
Description
The WebContentsImpl::FocusLocationBarByDefault function in content/browser/web_contents/web_contents_impl.cc in Google Chrome before 50.0.2661.75 mishandles focus for certain about:blank pages, which allows remote attackers to spoof the address bar via a crafted URL.
In the news0 stories
No ingested article mentions this CVE yet.