From the screenshot, the following key information about the vulnerability can be extracted: Title: Permission element inner div with style ; can be abused if no element in the parent chain has any ; are set. Type: Vulnerability Priority: P2 Severity: S3 Status: Fixed Reporter: sa...@gmail.com Assigned to: an...@chromium.org Description: - This vulnerability is related to multiple similar issues: #398803201, #423670839, #428455319, #429270814. - When is applied to a tag (such as ) that is a parent of the element, it affects the element and overrides its text. However, applying the style directly within the element itself does not trigger the issue. - This vulnerability could allow a website to trick users into triggering permission prompts, even if the permission is currently denied for that origin. Reference Link: CSS embedding for element Attachments: - bandicam 2025-07-04 10-43-30-719.mp4 (restricted) - gbh2.html Comments: - ah...@google.com assigned the issue to an...@chromium.org and temporarily set the severity to S3, consistent with related issues. - The issue base was set to the current extension version.