CVE-2016-5165observed exploitation

CVE-2016-5165

Published · Updated

25Vexday Risk Score

Prioritize patching. It exploitation observed by VulnCheck.

ssvc Attendepss 1.2%
from disclosure to weapon
Published on NVDSep 11
VulnCheck+1801d
exploitation probability
1.2%top 32% of all CVEs
observed exploitation
yesVulnCheck
Cross-site scripting (XSS) vulnerability in the Developer Tools (aka DevTools) subsystem in Google Chrome before 53.0.2785.89 on Windows and OS X and before 53.0.2785.92 on Linux allows remote attackers to inject arbitrary web script or HTML via the settings parameter in a chrome-devtools-frontend.appspot.com URL's query string.
Affected products
n/a · n/a