CVE-2019-13719 is a medium-severity vulnerability affecting Google Chrome versions prior to 78.0.3904.70, including related backports for openSUSE. It involves an incorrect security UI in full-screen mode, allowing a remote attacker to hide security indicators through a crafted HTML page. The attack requires user interaction (UI:R) and has a low impact on integrity (I:L), with no confidentiality or availability impact. There is no known active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or KEV listing, despite moderate community discussion and media coverage at the time of its disclosure.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 78.0.3904.70CPE match | cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:* | ||
15.0CPE matchmatch criteria | cpe:2.3:a:opensuse:backports_sle:15.0:sp1:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.