The WebContentsImpl::FocusLocationBarByDefault function in content/browser/webcontents/webcontents_impl.cc in Google Chrome before 50.0.2661.75 mishandles focus for certain about:blank pages, which allows remote attackers to spoof the address bar via a crafted URL.