CVE-2024-5840
Summary
Policy bypass in CORS in Google Chrome versions prior to 126.0.6478.54 allowed a remote attacker to bypass discretionary access control via a crafted HTML page.
- LOW
- NETWORK
- HIGH
- UNCHANGED
- REQUIRED
- NONE
- NONE
- NONE
References
Advisory Timeline
- Published