CVE-2019-13713: Medium severity google chrome (trace event) vulnerability
Published Nov 25, 2019
·Updated
Insufficient policy enforcement in JavaScript in Google Chrome prior to 78.0.3904.70 allowed a remote attacker to leak cross-origin data via a crafted HTML page.
Affected Software
2 affected components
Google Chrome<78.0.3904.70
openSUSE Backports=sle-15-sp1
Event History
Nov 25, 2019
CVE Published
via MITRE·02:22 PM
Data Sourced
via MITRE·02:22 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID of this security issue?
The vulnerability ID is CVE-2019-13713.
2
What is the severity of CVE-2019-13713?
The severity of CVE-2019-13713 is medium with a CVSS score of 6.5.
3
Which software is affected by CVE-2019-13713?
Google Chrome versions prior to 78.0.3904.70 and Opensuse Backports sle-15-sp1 are affected by CVE-2019-13713.
4
What is the impact of CVE-2019-13713?
CVE-2019-13713 allows a remote attacker to leak cross-origin data via a crafted HTML page.
5
How can I fix CVE-2019-13713?
Upgrade your installation of Google Chrome to version 78.0.3904.70 or later.