Endpoint Vulnerability

Security Vulnerability CVE-2018-16072 for Google Chrome

Description

A missing origin check related to HLS manifests in Blink in Google Chrome prior to 69.0.3497.81 allowed a remote attacker to bypass same origin policy via a crafted HTML page.

Affected Products

Google Chrome

References

CVE-2018-16072,