{ "id": "CVE-2023-4904", "sourceIdentifier": "chrome-cve-admin@google.com", "published": "2023-09-12T21:15:08.777", "lastModified": "2023-09-12T21:15:08.777", "vulnStatus": "Received", "descriptions": [ { "lang": "en", "value": "Insufficient policy enforcement in Downloads in Google Chrome prior to 117.0.5938.62 allowed a remote attacker to bypass Enterprise policy restrictions via a crafted download. (Chromium security severity: Medium)" } ], "metrics": {}, "references": [ { "url": "https://chromereleases.googleblog.com/2023/09/stable-channel-update-for-desktop_12.html", "source": "chrome-cve-admin@google.com" }, { "url": "https://crbug.com/1453501", "source": "chrome-cve-admin@google.com" } ] }