CVE-2016-1656: Google Chrome
High severity, CVSS 7.5. EPSS: 1.2% chance of exploitation in the next 30 days.
The download implementation in Google Chrome before 50.0.2661.75 on Android allows remote attackers to bypass intended pathname restrictions via unspecified vectors.
Affected products
- Google Chrome: up to and including 49.0.2623.112
- Opensuse Leap: version 42.1 only
- Suse Linux Enterprise: version 12.0 only
Published 2016-04-18. Last modified 2026-06-17.