A missing origin check related to HLS manifests in Blink in Google Chrome prior to 69.0.3497.81 allowed a remote attacker to bypass same origin policy via a crafted HTML page.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: Chrome
Published: 2019-01-09T19:00:00
Updated: 2019-01-10T10:57:01
Reserved: 2018-08-29T00:00:00
Link: CVE-2018-16072
JSON object: View
NVD Information
Status : Modified
Published: 2019-01-09T19:29:01.930
Modified: 2023-11-07T02:53:30.870
Link: CVE-2018-16072
JSON object: View
Redhat Information
No data.
CWE