CVE-2019-5778

Publication date

2019-02-19 17:00:00

Family

Chrome

State

PUBLISHED

Description

A missing case for handling special schemes in permission request checks in Extensions in Google Chrome prior to 72.0.3626.81 allowed an attacker who convinced a user to install a malicious extension to bypass extension permission checks for privileged pages via a crafted Chrome Extension.