Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Roberto Ffrench-Davis

#48863de 53,638
5CVSS total
Vulnerabilidades · 1
PT-2023-1960
5.0
2023-03-07
Google · Google Chrome · CVE-2023-1225
**Name of the Vulnerable Software and Affected Versions** Google Chrome on iOS versions prior to 111.0.5563.64 **Description** The issue is related to insufficient policy enforcement in the Navigation function of Google Chrome, allowing a remote attacker to bypass security restrictions using a specially crafted HTML page. This can lead to bypassing the same origin policy. **Recommendations** For Google Chrome on iOS versions prior to 111.0.5563.64, update to version 111.0.5563.64 or later to resolve the issue. As a temporary workaround, consider restricting access to untrusted HTML pages to minimize the risk of exploitation.