ios/web/web_state/ui/crw_web_controller.mm in Google Chrome prior to 52.0.2743.82 on iOS does not ensure that an invalid URL is replaced with the about:blank URL, which allows remote malicious users to spoof the URL display via a crafted web site.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
google chrome |