Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:28786
HistoryDec 21, 2020 - 8:39 p.m.

Arbitrary Code Execution

2020-12-2120:39:04
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
13
chromium
vulnerability
code execution
networking
remote attacker
same origin policy
html page

EPSS

0.006

Percentile

79.3%

chromium is vulnerable to arbitrary code execution. The vulnerability exists through insufficient policy enforcement in networking that allows a remote attacker who had compromised the renderer process to bypass same origin policy via a crafted HTML page.