Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:28145
HistoryDec 06, 2020 - 3:08 a.m.

Authorization Bypass

2020-12-0603:08:46
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
9
chromium
authorization bypass
vulnerability
navigation
google chrome
domain spoofing
html page

EPSS

0.003

Percentile

68.5%

chromium is vulnerable to authorization bypass. The library does not properly handle download origins in Navigation in Google Chrome, allowing a malicious user to perform domain spoofing via a crafted HTML page.