Web Payments API Vulnerability in Google Chrome
CVE-2017-5110
Key Information:
- Vendor
Google
- Vendor
- CVE Published:
- 27 October 2017
What is CVE-2017-5110?
The web payments API in Google Chrome versions before 60.0.3112.78 has a vulnerability due to inappropriate handling of blob: and data: schemes. This flaw allows remote attackers to create a malicious HTML page that can spoof the content displayed in the Omnibox, potentially misleading users and compromising security. Users are advised to update to the latest version of Chrome to mitigate this threat.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Google Chrome prior to 60.0.3112.78 for Mac, Windows, Linux and Android Google Chrome prior to 60.0.3112.78 for Mac, Windows, Linux and Android
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved