ZeroHour

CVE-2016-5217

CVSS 3.0
6.5 medium
EPSS
1%p67
Published
()
Modified
Description

The extensions API in Google Chrome prior to 55.0.2883.75 for Mac, Windows and Linux, and 55.0.2883.84 for Android incorrectly permitted access to privileged plugins, which allowed a remote attacker to bypass site isolation via a crafted HTML page.

Vendors
google
Products
chrome
Weakness
CWE-284
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N

In the news

No ingested article mentions this CVE yet.