Related Vulnerabilities: CVE-2021-38019  

An insufficient policy enforcement security issue has been found in the CORS component of the Chromium browser engine before version 96.0.4664.45.

Severity Medium

Remote Yes

Type Same-origin policy bypass

Description

An insufficient policy enforcement security issue has been found in the CORS component of the Chromium browser engine before version 96.0.4664.45.

AVG-2525 opera 81.0.4196.31-1 High Vulnerable

AVG-2475 vivaldi 4.3.2439.65-1 High Vulnerable

AVG-2560 chromium 95.0.4638.69-2 96.0.4664.45-1 High Fixed

https://chromereleases.googleblog.com/2021/11/stable-channel-update-for-desktop.html
https://crbug.com/1251179