VYPR
Unrated severityNVD Advisory· Published Jul 23, 2015· Updated Jun 17, 2026

CVE-2015-1281

CVE-2015-1281

Description

core/loader/ImageLoader.cpp in Blink, as used in Google Chrome before 44.0.2403.89, does not properly determine the V8 context of a microtask, which allows remote attackers to bypass Content Security Policy (CSP) restrictions by providing an image from an unintended source.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

10

Patches

Vulnerability mechanics

References

9

News mentions

0

No linked articles in our index yet.