漏洞关键信息 Issue Number: 40091567 Title: Security: IDN URL spoofing - "O" can be used to spoof "o2.co.uk" Type: Vulnerability Priority: P1 Severity: S2 Status: Fixed Reporter: ch...@gmail.com Assignee: jd...@chromium.org Chromium Version: Chrome Version: 69.0.3449.0 (Official Build) canary (64-bit) Operating System: Mac Real Domain: https://www.o2.co.uk (listed in top-100k domain) Spoof Domain: http://xn--2-ppe.co.uk Comments and Collaborators Collaborators: ch...@gmail.com, cr...@chromium.org, jd...@chromium.org, me...@chromium.org, mg...@chromium.org Labels: Security_Impact-Stable, CVE_description-submitted, idn-spoof, Team-Security-UX, Team-TrustyTransport Component Tags: UI>Browser>Omnibox