Security Advisory

CVE-2017-15427

6.1
MEDIUM

Vulnerability Description

Insufficient policy enforcement in Omnibox in Google Chrome prior to 63.0.3239.84 allowed a socially engineered user to XSS themselves by dragging and dropping a javascript: URL into the URL bar.
Published Date August 28, 2018
Official Source NIST NVD Advisory