vulnerability

Microsoft Edge Chromium CVE-2021-21186: Insufficient policy enforcement in QR scanning

Severity
4
CVSS
(AV:N/AC:M/Au:N/C:N/I:P/A:N)
Published
Mar 9, 2021
Added
Nov 17, 2021
Modified
Nov 26, 2024

Description

Insufficient policy enforcement in QR scanning in Google Chrome on iOS prior to 89.0.4389.72 allowed an attacker who convinced the user to scan a QR code to bypass navigation restrictions via a crafted QR code.

Solution

microsoft-edge-upgrade-latest
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.