Field Assessment
AI analysis pending.
CVE
CVE-2011-2878
Severity
HIGH
CVSS
7.5
EPSS
1.02%
Chrome
Original Filing — NVD Description
Google Chrome before 14.0.835.202 does not properly restrict access to the window prototype, which allows remote attackers to bypass the Same Origin Policy via unspecified vectors.