mirror of
https://github.com/0xMarcio/cve.git
synced 2026-02-17 19:32:56 +00:00
776 B
776 B
CVE-2016-1682
Description
The ServiceWorkerContainer::registerServiceWorkerImpl function in WebKit/Source/modules/serviceworkers/ServiceWorkerContainer.cpp in Blink, as used in Google Chrome before 51.0.2704.63, allows remote attackers to bypass the Content Security Policy (CSP) protection mechanism via a ServiceWorker registration.
POC
Reference
Github
No PoCs found on GitHub currently.