CVE-2021-30533

Insufficient policy enforcement in PopupBlocker in Google Chrome prior to 91.0.4472.77 allowed a remote attacker to bypass navigation restrictions via a crafted iframe.

  • Published Jun 7, 2021
  • CVSS 6.5 medium
  • 16.7% chance of exploitation in the next 30 days (EPSS)
  • In CISA's Known Exploited Vulnerabilities catalog
  • Public exploit code is available
  • A fix is available

Affected software

CVE-2021-30533 at the National Vulnerability Database