CVE-2012-2872: Google Chrome
Medium severity, CVSS 4.3. EPSS: 1.1% chance of exploitation in the next 30 days.
Cross-site scripting (XSS) vulnerability in an SSL interstitial page in Google Chrome before 21.0.1180.89 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Affected products
- Google Chrome: up to and including 21.0.1180.88; version 21.0.1180.0 only; version 21.0.1180.1 only; version 21.0.1180.2 only; version 21.0.1180.31 only; version 21.0.1180.32 only; …
- Opensuse Opensuse: version 12.1 only; version 12.2 only
Published 2012-08-31. Last modified 2026-06-16.