The drag implementation in Google Chrome prior to 34.0.1847.116 allows user-assisted remote malicious users to bypass the Same Origin Policy and forge local pathnames by leveraging renderer access.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
google chrome |