6.5
CVSSv3

CVE-2019-13697

Published: 25/11/2019 Updated: 07/11/2023
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 6.5 | Impact Score: 3.6 | Exploitability Score: 2.8
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:P/I:N/A:N

Vulnerability Summary

Insufficient policy enforcement in performance APIs in Google Chrome before 77.0.3865.120 allowed a remote malicious user to leak cross-origin data via a crafted HTML page.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

google chrome

Vendor Advisories

Synopsis Critical: chromium-browser security update Type/Severity Security Advisory: Critical Topic An update for chromium-browser is now available for Red Hat Enterprise Linux 6 SupplementaryRed Hat Product Security has rated this update as having a security impact of Critical A Common Vulnerability Scor ...
Several vulnerabilities have been discovered in the chromium web browser CVE-2019-5869 Zhe Jin discovered a use-after-free issue CVE-2019-5870 Guang Gong discovered a use-after-free issue CVE-2019-5871 A buffer overflow issue was discovered in the skia library CVE-2019-5872 Zhe Jin discovered a use-after-free issue CVE-2019-58 ...
A cross-origin size leak vulnerability has been found in the chromium browser before 7703865120 ...
The Stable channel has been updated to 7703865120 for Windows, Mac, and Linux This will roll out over the coming days/weeks A list of all changes is available in the log Security Fixes and Rewards Note: Access to bug details and links may be kept restricted until a majority of users are updated with a fix We will also retain restric ...