{ "id": "CVE-2024-3847", "sourceIdentifier": "chrome-cve-admin@google.com", "published": "2024-04-17T08:15:10.767", "lastModified": "2024-04-23T02:15:49.117", "vulnStatus": "Awaiting Analysis", "descriptions": [ { "lang": "en", "value": "Insufficient policy enforcement in WebUI in Google Chrome prior to 124.0.6367.60 allowed a remote attacker to bypass content security policy via a crafted HTML page. (Chromium security severity: Low)" }, { "lang": "es", "value": "La aplicaci\u00f3n insuficiente de pol\u00edticas en WebUI en Google Chrome antes de 124.0.6367.60 permiti\u00f3 a un atacante remoto eludir la pol\u00edtica de seguridad de contenido a trav\u00e9s de una p\u00e1gina HTML manipulada. (Severidad de seguridad de Chrome: baja)" } ], "metrics": {}, "references": [ { "url": "https://chromereleases.googleblog.com/2024/04/stable-channel-update-for-desktop_16.html", "source": "chrome-cve-admin@google.com" }, { "url": "https://issues.chromium.org/issues/328690293", "source": "chrome-cve-admin@google.com" }, { "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/CWIVXXSVO5VB3NAZVFJ7CWVBN6W2735T/", "source": "chrome-cve-admin@google.com" }, { "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/PCWPUBGTBNT4EW32YNZMRIPB3Y4R6XL6/", "source": "chrome-cve-admin@google.com" } ] }