Sploitus

CVE-2014-7939

No indexed exploits for CVE-2014-7939 yet

Google Chrome before 40.0.2214.91, when the Harmony proxy in Google V8 is enabled, allows remote attackers to bypass the Same Origin Policy via crafted JavaScript code with Proxy.create and console.log calls, related to HTTP responses that lack an "X-Content-Type-Options: nosniff" header.

Google Chrome
≤ 40.0.2214.85
Fix
Available
CVSS 2.0
4.3 MEDIUM
EPSS
2.6% (84th percentile)
Weakness
CWE-264
NVD status
Modified
Published
2015-01-22
CVE-2014-7939 at NVD
Authoritative description, scoring and affected products

No indexed exploits for CVE-2014-7939 yet

Our index is partial: it proves presence, never absence

No exploit for CVE-2014-7939 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.