CVE-2012-2815: Google Chrome
Medium severity, CVSS 5.0. EPSS: 1.3% chance of exploitation in the next 30 days.
Google Chrome before 20.0.1132.43 allows remote attackers to obtain potentially sensitive information from a fragment identifier by leveraging access to an IFRAME element associated with a different domain.
Affected products
- Google Chrome: up to and including 20.0.1132.42; version 20.0.1132.0 only; version 20.0.1132.1 only; version 20.0.1132.2 only; version 20.0.1132.3 only; version 20.0.1132.4 only; …
Published 2012-06-27. Last modified 2026-06-16.