CVE-2017-5085: Google Chrome

Medium severity, CVSS 6.1. EPSS: 1% chance of exploitation in the next 30 days.

Inappropriate implementation in Bookmarks in Google Chrome prior to 59 for iOS allowed a remote attacker who convinced the user to perform certain operations to run JavaScript on chrome:// pages via a crafted bookmark.

Affected products

  • Google Chrome: version 58.0.3029 only

Published 2017-10-27. Last modified 2026-06-17.