Insufficient data validation in QR scanner in Google Chrome on iOS prior to 90.0.4430.72 allowed an attacker displaying a QR code to perform domain spoofing via a crafted QR code.
| Software | From | Fixed in |
|---|---|---|
| google / chrome | - | 90.0.4430.72 |
| debian / debian_linux | 10.0 | 10.0.x |
| fedoraproject / fedora | 32 | 32.x |
| fedoraproject / fedora | 33 | 33.x |
| fedoraproject / fedora | 34 | 34.x |