Google · Google Chrome · CVE-2018-17468
**Name of the Vulnerable Software and Affected Versions**
Google Chrome versions prior to 70.0.3538.67
**Description**
The issue is related to the Blink rendering engine in Google Chrome, where a lack of protection for internal data can be exploited. This can allow a remote attacker to obtain cross-origin URLs by using a specially crafted HTML page. The exploitation is related to incorrect handling of timer information during navigation.
**Recommendations**
For versions prior to 70.0.3538.67, update to version 70.0.3538.67 or later to resolve the issue. As a temporary workaround, consider restricting access to potentially vulnerable HTML pages until the update is applied.