Security Advisory

CVE-2011-3956

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2012-02-09 02:00:00
Last updated 2024-08-06 23:53:32
Assigner Chrome
CVSS score not scored
State PUBLISHED

Description

The extension implementation in Google Chrome before 17.0.963.46 does not properly handle sandboxed origins, which might allow remote attackers to bypass the Same Origin Policy via a crafted extension.