Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Mexmat.Student

#34381of 53,624
7.5Total CVSS
Vulnerabilities · 1
PT-2015-1935
7.5
2015-08-29
Google · Google Chrome · CVE-2015-1297
**Name of the Vulnerable Software and Affected Versions** Google Chrome versions prior to 45.0.2454.85 **Description** The issue is related to the WebRequest API implementation in Google Chrome, which does not properly consider a request's source before accepting the request. This allows remote attackers to bypass intended access restrictions via a crafted app or extension. The vulnerability is related to errors in security settings. **Recommendations** For Google Chrome versions prior to 45.0.2454.85, update to version 45.0.2454.85 or later to resolve the issue. As a temporary workaround, consider restricting the use of the WebRequest API until a patch is available. Avoid using crafted apps or extensions that may exploit this issue.