Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Yongke Wong

#34641of 53,633
7.5Total CVSS
Vulnerabilities · 1
PT-2018-2576
7.5
2018-12-24
Google · Google Chrome · CVE-2019-5773
**Name of the Vulnerable Software and Affected Versions** Google Chrome versions prior to 72.0.3626.81 **Description** The issue is related to insufficient origin validation in the IndexedDB component of Google Chrome, which can be exploited by a remote attacker who has compromised the renderer process. This can allow the attacker to bypass the same origin policy via a crafted HTML page, potentially leading to unauthorized access to protected information. **Recommendations** For versions prior to 72.0.3626.81, update to version 72.0.3626.81 or later to resolve the issue. As a temporary workaround, consider restricting access to the IndexedDB component until a patch is applied.