Inappropriate implementation in Site Isolation in Google Chrome prior to 122.0.6261.57 allowed a remote attacker to bypass content security policy via a crafted HTML page. (Chromium security severity: Medium)
The product does not use or incorrectly uses a protection mechanism that provides sufficient defense against directed attacks against the product.