CVE-2010-1663
high · 10The Google URL Parsing Library (aka google-url or GURL) in Google Chrome before 4.1.249.1064 allows remote attackers to bypass the Same Origin Policy via unspecified vectors.
10
CVSS
54.1%
EPSS (exploit prob.)
99th
EPSS percentile
2010-05-03
Published
AV:N/AC:L/Au:N/C:C/I:C/A:C
Weaknesses
CWE-264
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| chrome | <= 4.1.249.1063 | |
| chrome | 0.2.149.27 | |
| chrome | 0.2.149.29 | |
| chrome | 0.2.149.30 | |
| chrome | 0.2.152.1 | |
| chrome | 0.2.153.1 | |
| chrome | 0.3.154.0 | |
| chrome | 0.3.154.3 | |
| chrome | 0.4.154.18 | |
| chrome | 0.4.154.22 | |
| chrome | 0.4.154.31 | |
| chrome | 0.4.154.33 | |
| chrome | 1.0.154.36 | |
| chrome | 1.0.154.39 | |
| chrome | 1.0.154.42 | |
| chrome | 1.0.154.43 | |
| chrome | 1.0.154.46 | |
| chrome | 1.0.154.48 | |
| chrome | 1.0.154.52 | |
| chrome | 1.0.154.53 | |
| chrome | 1.0.154.59 | |
| chrome | 1.0.154.64 | |
| chrome | 1.0.154.65 | |
| chrome | 2.0.156.1 | |
| chrome | 2.0.157.0 | |
| chrome | 2.0.157.2 | |
| chrome | 2.0.158.0 | |
| chrome | 2.0.159.0 | |
| chrome | 2.0.169.0 | |
| chrome | 2.0.169.1 | |
| chrome | 2.0.170.0 | |
| chrome | 2.0.172 | |
| chrome | 2.0.172.2 | |
| chrome | 2.0.172.8 | |
| chrome | 2.0.172.27 | |
| chrome | 2.0.172.28 | |
| chrome | 2.0.172.30 | |
| chrome | 2.0.172.31 | |
| chrome | 2.0.172.33 | |
| chrome | 2.0.172.37 |
Check a specific version with /api/v1/cve/match.
References
- http://bugs.chromium.org/40445
- http://googlechromereleases.blogspot.com/2010/04/stable-update-bug-and-security-fixes.html
- http://secunia.com/advisories/39651
- http://www.vupen.com/english/advisories/2010/1016
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6813
- http://bugs.chromium.org/40445
- http://googlechromereleases.blogspot.com/2010/04/stable-update-bug-and-security-fixes.html
- http://secunia.com/advisories/39651
- http://www.vupen.com/english/advisories/2010/1016
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6813
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2010-1663