CVE-2018-6035 PUBLISHED

Insufficient policy enforcement in DevTools in Google Chrome prior to 64.0.3282.119 allowed a remote attacker to potentially leak user local file data via a crafted Chrome Extension.

EPSS 1.56% · 81.4th percentile

Risk Scores

EPSS Score
1.56%
81.4th percentile

Affected Products

VendorProductVersions
Ubuntu:18.04:LTSchromium-browser63.0.3239.108-0ubuntu1, 63.0.3239.84-0ubuntu1, 62.0.3202.94-0ubuntu1.1388
Ubuntu:16.04:LTSchromium-browser49.0.2623.108-0ubuntu1.1233, 50.0.2661.102-0ubuntu0.16.04.1.1237, 51.0.2704.79-0ubuntu0.16.04.1.1242
Ubuntu:14.04:LTSchromium-browser61.0.3163.100-0ubuntu0.14.04.1202, 62.0.3202.62-0ubuntu0.14.04.1204, 62.0.3202.75-0ubuntu0.14.04.1211
Ubuntu:16.04:LTSoxide-qt1.12.5-0ubuntu1, 1.12.6-0ubuntu1, 1.12.7-0ubuntu1

Timeline

References

Open in Interactive Console →