Origin Restriction Bypass in Google Chrome OS
CVE-2013-2835
Currently unrated
What is CVE-2013-2835?
An origin restriction bypass vulnerability exists in Google Chrome OS versions prior to 26.0.1410.57. This flaw affects the enforcement of origin restrictions for the O3D and Google Talk plug-ins, allowing remote attackers to exploit this weakness via specially crafted websites. Users may be at risk as this vulnerability enables bad actors to bypass domain-whitelist protections, potentially leading to unauthorized actions or data exposure.