CVE-2022-3310
6.5MEDIUMInsufficient policy enforcement in custom tabs in Google Chrome on Android prior to 106.0.5249.62 allowed an attacker who convinced the user to install an application to bypass same origin policy via
Published: 11/1/2022Updated: 5/6/2025
Description
Insufficient policy enforcement in custom tabs in Google Chrome on Android prior to 106.0.5249.62 allowed an attacker who convinced the user to install an application to bypass same origin policy via a crafted application. (Chromium security severity: Medium)
AI AnalysisPowered by AI
Affected Products
googlechrome
googleandroid
-
References
- https://chromereleases.googleblog.com/2022/09/stable-channel-update-for-desktop_27.htmlRelease NotesVendor Advisory
- https://crbug.com/1240065ExploitIssue TrackingVendor Advisory
- https://chromereleases.googleblog.com/2022/09/stable-channel-update-for-desktop_27.htmlRelease NotesVendor Advisory
- https://crbug.com/1240065ExploitIssue TrackingVendor Advisory