Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2023-23821
HistoryMar 13, 2023 - 12:00 a.m.

Google Chrome Web Payments API component code issue vulnerability

2023-03-1300:00:00
China National Vulnerability Database
www.cnvd.org.cn
8
google chrome
web browser
code issue
vulnerability
policy enforcement
web payments api
remote attackers
navigation restrictions
crafted html pages
cnvd

0.001 Low

EPSS

Percentile

44.2%

Google Chrome is a web browser from Google, Inc. A code issue vulnerability exists in versions prior to Google Chrome 111.0.5563.64, which stems from a weak policy enforcement issue in the Web Payments API component. The vulnerability can be exploited by remote attackers to bypass navigation restrictions via crafted HTML pages.

CPENameOperatorVersion
google chrome <111.eq0.5563.64