CyberRota Analysis
AI analysis pending.
CVE
CVE-2018-18351
Severity
MEDIUM
CVSS
6.5
EPSS
2.55%
Chrome
Original NVD Description
Lack of proper validation of ancestor frames site when sending lax cookies in Navigation in Google Chrome prior to 71.0.3578.80 allowed a remote attacker to bypass SameSite cookie policy via a crafted HTML page.