CVE-2021-38019

Publication date

2021-12-23 00:05:54

Family

Chrome

State

PUBLISHED

Description

Insufficient policy enforcement in CORS in Google Chrome prior to 96.0.4664.45 allowed a remote attacker to leak cross-origin data via a crafted HTML page.