Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Ayush Agarwal

Researcher fromUniversity of Michigan
#52037of 53,633
4.3Total CVSS
Vulnerabilities · 1
PT-2021-5636
4.3
2021-09-21
Google · Google Chrome · CVE-2021-37963
**Name of the Vulnerable Software and Affected Versions** Google Chrome versions prior to 94.0.4606.54 **Description** The issue is related to side-channel information leakage in DevTools, allowing a remote attacker to bypass site isolation via a crafted HTML page. This is due to errors in data encryption. The attacker can exploit this issue to bypass existing security restrictions. **Recommendations** For versions prior to 94.0.4606.54, update to version 94.0.4606.54 or later to resolve the issue. As a temporary workaround, consider restricting access to DevTools or avoiding the use of crafted HTML pages that could exploit this issue.