Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:28469
HistoryDec 06, 2020 - 4:44 a.m.

Content-Security Policy Bypass

2020-12-0604:44:24
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
9

0.012 Low

EPSS

Percentile

85.3%

chromium is vulnerable to CSP bypass. Incorrect handling of CSP enforcement during navigations in Blink allows a remote attacker to bypass content security policy via a malicious HTML page.