Insufficient policy enforcement in JavaScript in Google Chrome prior to 78.0.3904.70 allowed a remote attacker to leak cross-origin data via a crafted HTML page.
| Software | From | Fixed in |
|---|---|---|
| google / chrome | - | 78.0.3904.70 |
| opensuse / backports | sle-15-sp1 | sle-15-sp1.x |