Loading HuntDB...

GHSA-mwmq-68qf-p3pw

GitHub Security Advisory

⚠ Unreviewed MODERATE Has CVE

Advisory Details

XSS Auditor in Google Chrome prior to 64.0.3282.119, did not ensure the reporting URL was in the same origin as the page it was on, which allowed a remote attacker to obtain referrer details via a crafted HTML page.

Related CVEs

Key Information

GHSA ID
GHSA-mwmq-68qf-p3pw
Published
May 14, 2022 1:59 AM
Last Modified
May 14, 2022 1:59 AM
CVSS Score
5.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: June 14, 2025 6:24 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.