报告的Google Chrome释放后使用漏洞
总漏洞赏金:$6.000
这是以下漏洞的概念验证:
[Google Security_Severity] CVE.
[高] CVE-2021-30573 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-30573
Google博客文章:
https://chromereleases.googleblog.com/2021/07/stable-channel-update-for-desktop_20.html
要求:无,只需在旧版Google Chrome [91.0.4472.77] + [稳定版] (官方构建) (64-bit) 中运行一个HTML文件。
poc-exploit.html (该漏洞在Google Chrome 91及更早版本中有效,已在92+版本中修复)
提到的漏洞是“Security For Everyone团队”报告的。