CVE-2013-0925Google Chrome vulnerability

CWE-2644 documents3 sources
Severity
7.5HIGHNVD
EPSS
0.2%
top 58.79%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedMar 28
Latest updateMay 17

Description

Google Chrome before 26.0.1410.43 does not ensure that an extension has the tabs (aka APIPermission::kTab) permission before providing a URL to this extension, which has unspecified impact and remote attack vectors.

CVSS vector

AV:N/AC:L/C:P/I:P/A:PExploitability: 10.0 | Impact: 6.4

Affected Packages1 packages

NVDgoogle/chrome26.0.1410.42+41

🔴Vulnerability Details

1
GHSA
GHSA-p3g4-236j-7mqc: Google Chrome before 262022-05-17

💬Community

2
Bugzilla
CVE-2013-2152 rhevm: spice service unquoted search path2013-06-05
Bugzilla
CVE-2013-2151 rhevm: rhev agent service unquoted search path2013-06-05
CVE-2013-0925 — Google Chrome vulnerability | cvebase