VYPR
High severity8.8NVD Advisory· Published Nov 14, 2018· Updated Jun 17, 2026

CVE-2018-6083

CVE-2018-6083

Description

Failure to disallow PWA installation from CSP sandboxed pages in AppManifest in Google Chrome prior to 65.0.3325.146 allowed a remote attacker to access privileged APIs via a crafted HTML page.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

9

Patches

Vulnerability mechanics

References

5

News mentions

0

No linked articles in our index yet.