Medium
CVSS 6.5
Overview
Incorrect handling of CSP enforcement during navigations in Blink in Google Chrome prior to 71.0.3578.80 allowed a remote attacker to bypass content security policy via a crafted HTML page.
Incorrect handling of CSP enforcement during navigations in Blink in Google Chro...
Incorrect handling of CSP enforcement during navigations in Blink in Google Chrome prior to 71.0.3578.80 allowed a remote attacker to bypass content security policy via a crafted HTML page.
This vulnerability is rated 🟡 MEDIUM.
Recommended actions: