Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:28959
HistoryJan 11, 2021 - 8:09 p.m.

Sandbox Restrictions Bypass

2021-01-1120:09:25
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
15
chromium
sandbox escape
vulnerability
drag and drop
remote attack

EPSS

0.006

Percentile

78.3%

chromium is vulnerable to sandbox restrictions bypass. A use-after-free in drag and drop allows a remote attacker who has compromised the renderer process to perform a sandbox escape via a malicious HTML page.