Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Shenrong Liu

Researcher fromADLab of Venustech
#40909of 53,633
6.5Total CVSS
Vulnerabilities · 1
PT-2016-6310
6.5
2016-10-12
Google · Google Chrome · CVE-2016-5192
**Name of the Vulnerable Software and Affected Versions** Google Chrome versions prior to 54.0.2840.59 Opera versions prior to 54.0.2840.59 **Description** The issue allows a remote attacker to bypass cross-origin restrictions via crafted HTML pages due to a missed CORS check on redirect in TextTrackLoader. **Recommendations** For Google Chrome versions prior to 54.0.2840.59, update to version 54.0.2840.59 or later. For Opera versions prior to 54.0.2840.59, update to version 54.0.2840.59 or later.