CyberRota Analysis
AI-GeneratedA local attacker can exploit insufficient validation of untrusted input in WebAppInstalls within Google Chrome on Android, allowing them to bypass the same origin policy through a specially crafted HTML page. While the vulnerability is rated low in severity, it poses a significant risk to users running affected versions prior to 150.0.7871.115. Android developers and security teams should prioritize this issue to mitigate potential exploitation.
Original NVD Description
Insufficient validation of untrusted input in WebAppInstalls in Google Chrome on Android prior to 150.0.7871.115 allowed a local attacker to bypass same origin policy via a crafted HTML page. (Chromium security severity: High)
Related CVEs
Other vulnerabilities affecting the same vendor(s)