← back
CVE-2018-6051

CVE-2018-6051

EPSS 1.3%
XSS Auditor in Google Chrome prior to 64.0.3282.119, did not ensure the reporting URL was in the same origin as the page it was on, which allowed a remote attacker to obtain referrer details via a crafted HTML page.
Affected products
Google · Chrome

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →