{ "id": "CVE-2024-3840", "sourceIdentifier": "chrome-cve-admin@google.com", "published": "2024-04-17T08:15:10.483", "lastModified": "2024-04-23T02:15:48.883", "vulnStatus": "Awaiting Analysis", "descriptions": [ { "lang": "en", "value": "Insufficient policy enforcement in Site Isolation in Google Chrome prior to 124.0.6367.60 allowed a remote attacker to bypass navigation restrictions via a crafted HTML page. (Chromium security severity: Medium)" }, { "lang": "es", "value": "La aplicaci\u00f3n insuficiente de pol\u00edticas en Site Isolation en Google Chrome antes de 124.0.6367.60 permiti\u00f3 a un atacante remoto eludir las restricciones de navegaci\u00f3n a trav\u00e9s de una p\u00e1gina HTML manipulada. (Severidad de seguridad de Chromium: media)" } ], "metrics": {}, "references": [ { "url": "https://chromereleases.googleblog.com/2024/04/stable-channel-update-for-desktop_16.html", "source": "chrome-cve-admin@google.com" }, { "url": "https://issues.chromium.org/issues/41493458", "source": "chrome-cve-admin@google.com" }, { "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/CWIVXXSVO5VB3NAZVFJ7CWVBN6W2735T/", "source": "chrome-cve-admin@google.com" }, { "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/PCWPUBGTBNT4EW32YNZMRIPB3Y4R6XL6/", "source": "chrome-cve-admin@google.com" } ] }