Unrestricted URL Access Vulnerability in Google Chrome Extension API

Unrestricted URL Access Vulnerability in Google Chrome Extension API

CVE-2013-0925 · HIGH Severity

AV:N/AC:L/AU:N/C:P/I:P/A:P

Google Chrome before 26.0.1410.43 does not ensure that an extension has the tabs (aka APIPermission::kTab) permission before providing a URL to this extension, which has unspecified impact and remote attack vectors.

Learn more about our Cis Benchmark Audit For Google Chrome.