Description
Inappropriate implementation in CORS in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to leak cross-origin data via a crafted HTML page. (Chromium security severity: Low)
CVSS 3.1EPSS 0.146%Risk 0.31
View source- Published
- 2026-07-30 01:17:00
- Affected versions
- <151.0.7922.72
- Type
- Web application
- Last modified
- 2026-08-03 17:27:51
- Vector
- CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N