CVE-2021-30560PoC(debian / chrome)

MEDIUMCVSS 8.8 · HIGH

Exploit discussion active in current signal (1 latest mentions)

Immediate actions

  • Prioritize remediation for debian chrome systems immediately
  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft
  • Track advisory updates for patch or workaround availability

Recommended action window: High priority (within 72h)

NVD description

Use after free in Blink XSLT in Google Chrome prior to 91.0.4472.164 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

4.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-416

Priority

MEDIUM

Exploitation

NONE

PoC

YES

Patch

AVAILABLE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • chrome
  • debian_linux
  • libxslt
  • universal_forwarder

Threat summary

  • Public PoC and exploit tooling are both present
  • 1 mentions across 1 observed day

What's happening

  • Exploit tool or code specified in 1 signal
  • PoC mentioned or linked in 1 signal
  • Technical details provided in 1 signal
  • 1 total mentions across 1 day

Affected systems

Products
chromedebian_linuxlibxsltuniversal_forwarder

3 versions affected across 4 products

Deep dive

Activity timeline1 mentions / 1d
00111Mentions · 2026-07-01: 1PoC Mentioned / Linked · 2026-07-01: 1Exploit Tool / Code · 2026-07-01: 1Technical Details · 2026-07-01: 107-01
Signal classification1 categories
PoC
1100.0%
Referenced assets1 URL
By indicator
Full discourse1 post
  • Snow Wolf@Snow_Wo1f
    PoC

    Mojo IPC 的序列化陷阱 本文从 Mojo 的绑定代码生成机制出发,逐层剖析消息伪造的底层原理,还原 CVE-2021-30560 等真实漏洞的利用路径,给出基于自建 Mojo 端点的消息注入 PoC,并讨论沙箱边界处的纵深防御策略。 https://blog.ghostwolflab.com/product_research/832/

    Post summary

    The post outlines a serialization flaw in Mojo IPC related to CVE‑2021‑30560, offers a PoC for message injection via a custom endpoint, and discusses defensive strategies, with no evidence of active exploitation, patches, or false‑positive allegations.

    11016172.2K
    6.4K followersView on X
CPE platform detail6 entries

6 of 6 entries

PartVendorProductVersionTarget SWTarget HW
OSdebiandebian_linux10.0--
OSdebiandebian_linux11.0--
Appgooglechrome---
Appsplunkuniversal_forwarder---
Appsplunkuniversal_forwarder9.1.0--
Appxmlsoftlibxslt---

Explore more