Insufficient data validation in HTML parser in Google Chrome prior to 67.0.3396.62 allowed a remote attacker to bypass same origin policy via a crafted HTML page.
References
Configurations
History
No history.
Information
Published : 2019-06-27 17:15
Updated : 2024-11-21 04:10
NVD link : CVE-2018-6145
Mitre link : CVE-2018-6145
CVE.ORG link : CVE-2018-6145
JSON object : View
Products Affected
- chrome
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')