CVE-2016-5133: Google Chrome

Medium severity, CVSS 5.3. EPSS: 1% chance of exploitation in the next 30 days.

Google Chrome before 52.0.2743.82 mishandles origin information during proxy authentication, which allows man-in-the-middle attackers to spoof a proxy-authentication login prompt or trigger incorrect credential storage by modifying the client-server data stream.

Affected products

  • Google Chrome: up to and including 51.0.2704.106

Published 2016-07-23. Last modified 2026-06-17.