{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-09-21T05:37:01.119","vulnerabilities":[{"cve":{"id":"CVE-2015-1304","sourceIdentifier":"chrome-cve-admin@google.com","published":"2015-10-12T01:59:17.003","lastModified":"2026-06-17T00:22:09.527","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"object-observe.js in Google V8, as used in Google Chrome before 45.0.2454.101, does not properly restrict method calls on access-checked objects, which allows remote attackers to bypass the Same Origin Policy via a (1) observe or (2) getNotifier call."},{"lang":"es","value":"object-observe.js en Google V8, tal como se utiliza en Google Chrome en versiones anteriores a 45.0.2454.101, no restringe adecuadamente las llamadas a métodos en objetos de acceso verificado, lo que permite a atacantes remotos eludir la Same Origin Policy a través de una llamada (1) observe o (2) getNotifier ."}],"affected":[{"source":"chrome-cve-admin@google.com","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-284"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*","versionEndIncluding":"45.0.2454.93","matchCriteriaId":"BAF7E119-082F-4332-A442-A885D0183927"}]}]}],"references":[{"url":"http://googlechromereleases.blogspot.com/2015/09/stable-channel-update_24.html","source":"chrome-cve-admin@google.com"},{"url":"http://lists.opensuse.org/opensuse-security-announce/2015-10/msg00008.html","source":"chrome-cve-admin@google.com"},{"url":"http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00002.html","source":"chrome-cve-admin@google.com"},{"url":"http://rhn.redhat.com/errata/RHSA-2015-1841.html","source":"chrome-cve-admin@google.com"},{"url":"http://www.debian.org/security/2015/dsa-3376","source":"chrome-cve-admin@google.com"},{"url":"http://www.securityfocus.com/bid/76844","source":"chrome-cve-admin@google.com"},{"url":"http://www.securitytracker.com/id/1033683","source":"chrome-cve-admin@google.com"},{"url":"http://www.ubuntu.com/usn/USN-2757-1","source":"chrome-cve-admin@google.com"},{"url":"https://chromium.googlesource.com/v8/v8/+/9b0fb52b57021473aa813f3fb99ad7384a8b86f1","source":"chrome-cve-admin@google.com"},{"url":"https://code.google.com/p/chromium/issues/detail?id=531891","source":"chrome-cve-admin@google.com"},{"url":"https://security.gentoo.org/glsa/201603-09","source":"chrome-cve-admin@google.com"},{"url":"http://googlechromereleases.blogspot.com/2015/09/stable-channel-update_24.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://lists.opensuse.org/opensuse-security-announce/2015-10/msg00008.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00002.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://rhn.redhat.com/errata/RHSA-2015-1841.html","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.debian.org/security/2015/dsa-3376","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securityfocus.com/bid/76844","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.securitytracker.com/id/1033683","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://www.ubuntu.com/usn/USN-2757-1","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://chromium.googlesource.com/v8/v8/+/9b0fb52b57021473aa813f3fb99ad7384a8b86f1","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://code.google.com/p/chromium/issues/detail?id=531891","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://security.gentoo.org/glsa/201603-09","source":"af854a3a-2127-422b-91ae-364da2661108"}]}}]}