Security Advisory
CVE-2017-15427
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
Insufficient policy enforcement in Omnibox in Google Chrome prior to 63.0.3239.84 allowed a socially engineered user to XSS themselves by dragging and dropping a javascript: URL into the URL bar.