Insufficient policy enforcement in WebUI in Google Chrome prior to 87.0.4280.141 allowed an attacker who convinced a user to install a malicious extension to potentially perform a sandbox escape via a crafted Chrome Extension.
References
Configurations
History
No history.
Information
Published : 2021-01-08 19:15
Updated : 2024-11-21 05:47
NVD link : CVE-2021-21111
Mitre link : CVE-2021-21111
CVE.ORG link : CVE-2021-21111
JSON object : View
Products Affected
- chrome
debian
- debian_linux
fedoraproject
- fedora
CWE
CWE-1021
Improper Restriction of Rendered UI Layers or Frames