Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:28137
HistoryDec 06, 2020 - 3:06 a.m.

Content-Security Policy Bypass

2020-12-0603:06:57
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
8

0.003 Low

EPSS

Percentile

65.6%

chromium is vulnerable to CSP bypass. Incorrect inheritance of a new document’s policy allows a remote attacker to bypass content security policy via a malicious HTML page.