← All CVEs

CVE-2010-1663

high · 10

The Google URL Parsing Library (aka google-url or GURL) in Google Chrome before 4.1.249.1064 allows remote attackers to bypass the Same Origin Policy via unspecified vectors.

10
CVSS
54.1%
EPSS (exploit prob.)
99th
EPSS percentile
2010-05-03
Published

AV:N/AC:L/Au:N/C:C/I:C/A:C

Weaknesses

CWE-264

Affected products

VendorProductAffected versions
googlechrome<= 4.1.249.1063
googlechrome0.2.149.27
googlechrome0.2.149.29
googlechrome0.2.149.30
googlechrome0.2.152.1
googlechrome0.2.153.1
googlechrome0.3.154.0
googlechrome0.3.154.3
googlechrome0.4.154.18
googlechrome0.4.154.22
googlechrome0.4.154.31
googlechrome0.4.154.33
googlechrome1.0.154.36
googlechrome1.0.154.39
googlechrome1.0.154.42
googlechrome1.0.154.43
googlechrome1.0.154.46
googlechrome1.0.154.48
googlechrome1.0.154.52
googlechrome1.0.154.53
googlechrome1.0.154.59
googlechrome1.0.154.64
googlechrome1.0.154.65
googlechrome2.0.156.1
googlechrome2.0.157.0
googlechrome2.0.157.2
googlechrome2.0.158.0
googlechrome2.0.159.0
googlechrome2.0.169.0
googlechrome2.0.169.1
googlechrome2.0.170.0
googlechrome2.0.172
googlechrome2.0.172.2
googlechrome2.0.172.8
googlechrome2.0.172.27
googlechrome2.0.172.28
googlechrome2.0.172.30
googlechrome2.0.172.31
googlechrome2.0.172.33
googlechrome2.0.172.37

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2010-1663