VYPR
High severity7.8NVD Advisory· Published Jun 27, 2019· Updated Jun 17, 2026

CVE-2018-6176

CVE-2018-6176

Description

Insufficient file type enforcement in Extensions API in Google Chrome prior to 68.0.3440.75 allowed a remote attacker who had compromised the renderer process to perform privilege escalation via a crafted Chrome Extension.

Affected products

3

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.