Google · Google Chrome · CVE-2015-1297
**Name of the Vulnerable Software and Affected Versions**
Google Chrome versions prior to 45.0.2454.85
**Description**
The issue is related to the WebRequest API implementation in Google Chrome, which does not properly consider a request's source before accepting the request. This allows remote attackers to bypass intended access restrictions via a crafted app or extension. The vulnerability is related to errors in security settings.
**Recommendations**
For Google Chrome versions prior to 45.0.2454.85, update to version 45.0.2454.85 or later to resolve the issue. As a temporary workaround, consider restricting the use of the WebRequest API until a patch is available. Avoid using crafted apps or extensions that may exploit this issue.