CVE-2021-21127 PUBLISHED

Insufficient policy enforcement in extensions in Google Chrome prior to 88.0.4324.96 allowed a remote attacker to bypass content security policy via a crafted Chrome Extension.

EPSS 2.86% · 86.1th percentile

Risk Scores

EPSS Score
2.86%
86.1th percentile

Affected Products

VendorProductVersions
Ubuntu:18.04:LTSchromium-browser61.0.3163.100-0ubuntu1.1378, 0, 62.0.3202.62-0ubuntu0.17.10.1380
Ubuntu:16.04:LTSchromium-browser81.0.4044.122-0ubuntu0.16.04.1, 81.0.4044.138-0ubuntu0.16.04.1, 85.0.4183.83-0ubuntu0.16.04.2

Timeline

References

Open in Interactive Console →