CyberRota Analysis
AI-GeneratedA cross-site request forgery vulnerability in the DeviceBoundSessionCredentials component of Google Chrome prior to version 153.0.8010.36 allows remote attackers to bypass web origin policies through specially crafted HTML pages. This could lead to unauthorized actions being performed on behalf of users without their consent. Organizations using affected versions of Chrome should prioritize updates to mitigate potential security risks.
Original NVD Description
Cross-site request forgery in DeviceBoundSessionCredentials in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)
Related CVEs
Other vulnerabilities affecting the same vendor(s)