Date published: 2014-04-09T06:57:56.963-04:00
Date last modified: 2017-01-06T21:59:42.783-05:00
CVSS Score: 4.3
Principal attack vector: NETWORK
Reference URL: http://googlechromereleases.blogspot.com/2014/04/stable-channel-update.html
Summary: The drag implementation in Google Chrome before 34.0.1847.116 allows user-assisted remote attackers to bypass the Same Origin Policy and forge local pathnames by leveraging renderer access.