CVE-2022-3310
6.5MEDIUMInsufficient policy enforcement in custom tabs in Google Chrome on Android prior to 106.0.5249.62 allowed an attacker who convinced the user to install an application to bypass same origin policy via
Publicado: 11/1/2022Actualizado: 5/6/2025
Descripción
Insufficient policy enforcement in custom tabs in Google Chrome on Android prior to 106.0.5249.62 allowed an attacker who convinced the user to install an application to bypass same origin policy via a crafted application. (Chromium security severity: Medium)
Análisis IAImpulsado por IA
Productos Afectados
googlechrome
googleandroid
-
Referencias
- https://chromereleases.googleblog.com/2022/09/stable-channel-update-for-desktop_27.htmlRelease NotesVendor Advisory
- https://crbug.com/1240065ExploitIssue TrackingVendor Advisory
- https://chromereleases.googleblog.com/2022/09/stable-channel-update-for-desktop_27.htmlRelease NotesVendor Advisory
- https://crbug.com/1240065ExploitIssue TrackingVendor Advisory