CVE-2017-15427

Publication date

2018-08-28 19:00:00

Family

Chrome

State

PUBLISHED

Description

Insufficient policy enforcement in Omnibox in Google Chrome prior to 63.0.3239.84 allowed a socially engineered user to XSS themselves by dragging and dropping a javascript: URL into the URL bar.