Google Chrome
cpe:2.3:a:google:chrome:*:*:*:*:*:*:*, +1 more
- < 148.0.7778.96
A vulnerability in Google Chrome's WebUI component on Linux, Mac, Windows, and ChromeOS, prior to version 148.0.7778.96, allowed remote attackers to bypass site isolation. This was achieved through a crafted HTML page that exploited insufficient policy enforcement, enabling the attacker to manipulate the renderer process.
Exploitation of this vulnerability could lead to a bypass of site isolation, potentially allowing for cross-site information leakage or other related attacks that could exploit the lack of isolation.
Users can update to Google Chrome version 148.0.7778.96 or later to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.