A AegiFlow
MEDIUMCVSS 6.5

CVE-2016-5172

CVE-2016-5172 updated by NVD

Modified
2026-09-20
Sources
nvd

Summary

The parser in Google V8, as used in Google Chrome before 53.0.2785.113, mishandles scopes, which allows remote attackers to obtain sensitive information from arbitrary memory locations via crafted JavaScript code.

Affected packages

EcosystemPackageAffected versionsFixed versions
Node.jsnode.js[object Object]

References

Includes data from the National Vulnerability Database (NIST). NVD data is in the public domain; this page is not endorsed by NIST.

CVE® is a registered trademark of The MITRE Corporation. CVE content reproduced under the CVE Terms of Use; copyright designation © MITRE.