Google Chrome
cpe:2.3:a:google:chrome:*:*:*:*:*:*:*, +1 more
- < 148.0.7778.179
A vulnerability in Google Chrome's Service Worker component, affecting versions prior to 148.0.7778.179, allowed remote attackers to bypass the same-origin policy using a crafted HTML page. This flaw resulted from inadequate policy enforcement, creating a potential security risk by enabling cross-origin interactions that should have been restricted.
Exploitation of this vulnerability could lead to unauthorized cross-origin resource access, potentially allowing attackers to manipulate or steal data from other origins.
Users can update to Google Chrome version 148.0.7778.179 or later to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.