Insufficient policy enforcement in extensions in Google Chrome prior to 78.0.3904.70 allowed an attacker who convinced a user to install a malicious extension to leak cross-origin data via a crafted Chrome Extension.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: Chrome
Published: 2019-11-25T14:22:55
Updated: 2024-08-05T00:05:42.212Z
Reserved: 2019-07-18T00:00:00
Link: CVE-2019-13705
Vulnrichment
No data.
NVD
Status : Modified
Published: 2019-11-25T15:15:32.917
Modified: 2023-11-07T03:04:12.780
Link: CVE-2019-13705
Redhat