New issue
Advanced search Search tips

Issue 797495 link

Starred by 1 user

Issue metadata

Status: WontFix
Owner: ----
Closed: Dec 2017
Cc:
EstimatedDays: ----
NextAction: ----
OS: ----
Pri: ----
Type: Bug-Security



Sign in to add a comment

Security: content injection vulnerability in accounts.google.com

Reported by taharpay...@gmail.com, Dec 23 2017

Issue description

Hi www.google.com support team
----------------------------------------------------
My name is Tahar Benaissa from Algeria
-----------------------------------------------------
The bug is content injection vulnerability
The domain is : main domain => https://www.google.com/



----------------------------------------------------------------------------





https://accounts.google.com/signin/rejected?hl=enee&rrk=28&identifier=<inject>

// We have scanned your account and found it to be infected with a virus , to clean your off , please browse on the link below .

----------------------------------------------------------------------------
I hope you fix it.
Thanks for watching.
My language english is bad , please accept my apologies.

 
Cc: evn@google.com elawrence@chromium.org
Status: WontFix (was: Unconfirmed)
Summary: Security: content injection vulnerability in accounts.google.com (was: Security: content injection vulnerability)
Thanks for the report. This bugtracker is used only for Google Chrome itself, and not other Google sites and services. Please see https://www.google.com/about/appsecurity/reward-program/ for instructions on where to send this bug report. 
Project Member

Comment 2 by sheriffbot@chromium.org, Apr 1 2018

Labels: -Restrict-View-SecurityTeam allpublic
This bug has been closed for more than 14 weeks. Removing security view restrictions.

For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot

Sign in to add a comment