CVE-2015-6782 describes a vulnerability in Google Chrome's WebKit rendering engine, specifically within the Document::open function. This flaw allows remote attackers to spoof Omnibox content through crafted websites due to incompatible handling of page-dismissal events and modal-dialog blocking. Rated with a CVSS score of 4.3, it has a medium attack complexity and a partial impact on integrity, but no impact on confidentiality or availability. There is no evidence of active exploitation, and no public exploit code is available, with minimal community discussion and media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 46.0.2490.86CPE matchmatch criteria | cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:M/Au:N/C:N/I:P/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.