Security Advisory

CVE-2021-38020

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2021-12-23 00:05:55
Last updated 2024-08-04 01:30:09
Assigner Chrome
CVSS score not scored
State PUBLISHED

Description

Insufficient policy enforcement in contacts picker in Google Chrome on Android prior to 96.0.4664.45 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page.