CVE Published: 26/10/2016 |
CVE Updated: 06/08/2024 |
CVE Year: 2016 Source: yandex |
Vendor: Yandex N.V. |
Product: Yandex Browser for desktop Status : PUBLISHED
CVE-2016-8504 Description
CSRF of synchronization form in Yandex Browser for desktop before version 16.6 could be used by remote attacker to steal saved data in browser profile.