← back
CVE-2018-6099

CVE-2018-6099

3Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackepss 1.6%
exploitation probability
1.6%top 25% of all CVEs
observed exploitation
nono source reports it
A lack of CORS checks in Blink in Google Chrome prior to 66.0.3359.117 allowed a remote attacker to leak limited cross-origin data via a crafted HTML page.
Affected products
Google · Chrome