CVE-2019-5804
MEDIUMChrome <73.0.3683.75 - CSRF
Title source: llmDescription
Incorrect command line processing in Chrome in Google Chrome prior to 73.0.3683.75 allowed a local attacker to perform domain spoofing via a crafted domain name.
Scores
CVSS v3
5.5
EPSS
0.0004
EPSS Percentile
13.6%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
Classification
CWE
CWE-88
Status
published
Affected Products (5)
google/chrome
< 73.0.3683.75
opensuse/backports
opensuse/leap
opensuse/leap
opensuse/leap
Timeline
Published
May 23, 2019
Tracked Since
Feb 18, 2026