CVE-2019-13741
Severity
8.8HIGH
EPSS
1.4%
top 19.33%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedDec 10
Latest updateMay 24
Description
Insufficient validation of untrusted input in Blink in Google Chrome prior to 79.0.3945.79 allowed a local attacker to bypass same origin policy via crafted clipboard content.
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:HExploitability: 2.8 | Impact: 5.9
Affected Packages6 packages
Also affects: Debian Linux 10.0, 9.0, Fedora 30, 31, Enterprise Linux 6.0
🔴Vulnerability Details
3GHSA▶
GHSA-3w34-xv7m-phqr: Insufficient validation of untrusted input in Blink in Google Chrome prior to 79↗2022-05-24
CVEList▶
CVE-2019-13741: Insufficient validation of untrusted input in Blink in Google Chrome prior to 79↗2019-12-10
OSV▶
CVE-2019-13741: Insufficient validation of untrusted input in Blink in Google Chrome prior to 79↗2019-12-10
📋Vendor Advisories
3💬Community
1Bugzilla
▶