CVE-2012-2815: Google Chrome

Medium severity, CVSS 5.0. EPSS: 1.3% chance of exploitation in the next 30 days.

Google Chrome before 20.0.1132.43 allows remote attackers to obtain potentially sensitive information from a fragment identifier by leveraging access to an IFRAME element associated with a different domain.

Affected products

  • Google Chrome: up to and including 20.0.1132.42; version 20.0.1132.0 only; version 20.0.1132.1 only; version 20.0.1132.2 only; version 20.0.1132.3 only; version 20.0.1132.4 only; …

Published 2012-06-27. Last modified 2026-06-16.