Cross-site scripting (XSS) vulnerability in Google Chrome 2.x and 3.x prior to 3.0.195.21 allows remote malicious users to inject arbitrary web script or HTML via a (1) RSS or (2) Atom feed, related to the rendering of the application/rss+xml content type as XML "active content."
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
google chrome 2.0.156.1 |
||
google chrome 2.0.157.0 |
||
google chrome 2.0.157.2 |
||
google chrome 2.0.158.0 |
||
google chrome 2.0.159.0 |
||
google chrome 2.0.169.0 |
||
google chrome 2.0.169.1 |
||
google chrome 2.0.170.0 |
||
google chrome 2.0.172 |
||
google chrome 2.0.172.2 |
||
google chrome 2.0.172.8 |
||
google chrome 2.0.172.27 |
||
google chrome 2.0.172.28 |
||
google chrome 2.0.172.30 |
||
google chrome 2.0.172.31 |
||
google chrome 2.0.172.33 |
||
google chrome 2.0.172.37 |
||
google chrome 2.0.172.38 |
||
google chrome 3.0.182.2 |
||
google chrome 3.0.190.2 |
||
google chrome 3.0.193.2 |