Google Chrome
cpe:2.3:a:google:chrome:*:*:*:*:*:*:*, +1 more
- < 147.0.7727.55
A vulnerability exists in Google Chrome in the WebSockets component, prior to version 147.0.7727.55. This issue allows a remote attacker, who has compromised the renderer process, to bypass the same-origin policy by exploiting insufficient validation of untrusted input. The vulnerability can be triggered through a crafted HTML page.
Exploitation of this vulnerability allows for a same-origin policy bypass, which could lead to unauthorized access or manipulation of data between different origins.
Users can update to Google Chrome version 147.0.7727.55 or later to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.