Security Advisory
CVE-2013-2881
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
Google Chrome before 28.0.1500.95 does not properly handle frames, which allows remote attackers to bypass the Same Origin Policy via a crafted web site.