Medium severity6.1NVD Advisory· Published Jan 19, 2017· Updated May 13, 2026
CVE-2016-5208
CVE-2016-5208
Description
Blink in Google Chrome prior to 55.0.2883.75 for Linux and Windows, and 55.0.2883.84 for Android allowed possible corruption of the DOM tree during synchronous event handling, which allowed a remote attacker to inject arbitrary scripts or HTML (UXSS) via a crafted HTML page.
Affected products
2- osv-coords2 versionspkg:rpm/opensuse/chromium&distro=openSUSE%20Tumbleweedpkg:rpm/suse/chromium&distro=SUSE%20Package%20Hub%2012%20SP2
< 55.0.2883.75-3.1+ 1 more
- (no CPE)range: < 55.0.2883.75-3.1
- (no CPE)range: < 55.0.2883.75-2.1
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
5News mentions
0No linked articles in our index yet.