PT-2026-24881 · Google+1 · Chromedriver+2
Povcfe
·
Publicado
2026-01-26
·
Atualizado
2026-05-15
·
CVE-2026-3934
CVSS v2.0
7.5
Alta
| Vetor | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Google Chrome versions prior to 146.0.7680.71
Description
Insufficient policy enforcement in ChromeDriver in Google Chrome allowed a remote attacker to bypass the same origin policy through a crafted HTML page. The Chromium security severity is rated as Medium.
Recommendations
Update Google Chrome to version 146.0.7680.71 or later.
Correção
Improper Access Control
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Chromedriver
Google Chrome
Red Os