| Vuln ID | Severity | Asset | STIG | Title | Status | Doc Status | Assigned To | Actions |
|---|---|---|---|---|---|---|---|---|
| V-221596 | CAT II | MONT-WS-92040 | Google Chrome Current Windows Security T... | URLs must be allowlisted for Autoplay use. | - | |||
Check TextUniversal method: 1. In the omnibox (address bar), type chrome://policy. 2. If “AutoplayAllowlist” under the “Policy Name” column may be set to a list of administrator-approved URLs under the “Policy Value” column. This requirement is optional. Windows method: 1. Start regedit. 2. Navigate to HKLM\Software\Policies\Google\Chrome\ 3. If the “AutoplayAllowlist” key may contain a list of administrator-approved URLs. This requirement is optional. Fix TextWindows group policy: 1. Open the “group policy editor” tool with gpedit.msc. 2. Navigate to Policy Path: Computer Configuration\Administrative Templates\Google\Google Chrome - Policy Name: Allow media autoplay on a allowlist of URL patterns. - Policy State: Enabled - Policy Value 1: [*.]mil - Policy Value 2: [*.]gov Note: Policy values are examples. Finding DetailsEvaluate-STIG 1.2507.5 (Scan-GoogleChrome_Checks) found this to be NOT A FINDING on 10/23/2025 ResultHash: AAD1ABC02C91EED66628615D9BAF76514E0BC7FE ~~~~~ Registry key for HKLM:SOFTWARE\Policies\Google\Chrome\AutoplayAllowlist exists. Current values: 1 : [*.]mil 2 : [*.]gov
Source: _Reviewed/MONT-WS-92040/Checklist/MONT-WS-92040_Chrome_V2R11_20251023-142120.ckl
Scan Date: 2026-01-14T12:57:25.338171
Technology Area: Windows Operating System
|
||||||||
| V-221596 | CAT II | MONT-WS-92010 | Google Chrome Current Windows Security T... | URLs must be allowlisted for Autoplay use. | - | |||
Check TextUniversal method: 1. In the omnibox (address bar), type chrome://policy. 2. If “AutoplayAllowlist” under the “Policy Name” column may be set to a list of administrator-approved URLs under the “Policy Value” column. This requirement is optional. Windows method: 1. Start regedit. 2. Navigate to HKLM\Software\Policies\Google\Chrome\ 3. If the “AutoplayAllowlist” key may contain a list of administrator-approved URLs. This requirement is optional. Fix TextWindows group policy: 1. Open the “group policy editor” tool with gpedit.msc. 2. Navigate to Policy Path: Computer Configuration\Administrative Templates\Google\Google Chrome - Policy Name: Allow media autoplay on a allowlist of URL patterns. - Policy State: Enabled - Policy Value 1: [*.]mil - Policy Value 2: [*.]gov Note: Policy values are examples. Finding DetailsEvaluate-STIG 1.2507.5 (Scan-GoogleChrome_Checks) found this to be NOT A FINDING on 10/23/2025 ResultHash: AAD1ABC02C91EED66628615D9BAF76514E0BC7FE ~~~~~ Registry key for HKLM:SOFTWARE\Policies\Google\Chrome\AutoplayAllowlist exists. Current values: 1 : [*.]mil 2 : [*.]gov
Source: _Reviewed/MONT-WS-92010/Checklist/MONT-WS-92010_Chrome_V2R11_20251023-140804.ckl
Scan Date: 2026-01-14T12:57:27.625294
Technology Area: Windows Operating System
|
||||||||
| V-221596 | CAT II | MONT-SW-89108 | Google Chrome Current Windows Security T... | URLs must be allowlisted for Autoplay use. | - | |||
Check TextUniversal method: 1. In the omnibox (address bar), type chrome://policy. 2. If “AutoplayAllowlist” under the “Policy Name” column may be set to a list of administrator-approved URLs under the “Policy Value” column. This requirement is optional. Windows method: 1. Start regedit. 2. Navigate to HKLM\Software\Policies\Google\Chrome\ 3. If the “AutoplayAllowlist” key may contain a list of administrator-approved URLs. This requirement is optional. Fix TextWindows group policy: 1. Open the “group policy editor” tool with gpedit.msc. 2. Navigate to Policy Path: Computer Configuration\Administrative Templates\Google\Google Chrome - Policy Name: Allow media autoplay on a allowlist of URL patterns. - Policy State: Enabled - Policy Value 1: [*.]mil - Policy Value 2: [*.]gov Note: Policy values are examples. Finding DetailsEvaluate-STIG 1.2510.0 (Scan-GoogleChrome_Checks) found this to be NOT A FINDING on 12/17/2025 ResultHash: AAD1ABC02C91EED66628615D9BAF76514E0BC7FE ~~~~~ Registry key for HKLM:SOFTWARE\Policies\Google\Chrome\AutoplayAllowlist exists. Current values: 1 : [*.]mil 2 : [*.]gov
Source: MONT-SW-89108_Chrome_V2R11_20251217-202759.ckl
Scan Date: 2026-03-04T15:25:15.778437
Technology Area: Windows Operating System
|
||||||||
| V-221596 | CAT II | MONT-SW-89134 | Google Chrome Current Windows Security T... | URLs must be allowlisted for Autoplay use. | - | |||
Check TextUniversal method: 1. In the omnibox (address bar), type chrome://policy. 2. If “AutoplayAllowlist” under the “Policy Name” column may be set to a list of administrator-approved URLs under the “Policy Value” column. This requirement is optional. Windows method: 1. Start regedit. 2. Navigate to HKLM\Software\Policies\Google\Chrome\ 3. If the “AutoplayAllowlist” key may contain a list of administrator-approved URLs. This requirement is optional. Fix TextWindows group policy: 1. Open the “group policy editor” tool with gpedit.msc. 2. Navigate to Policy Path: Computer Configuration\Administrative Templates\Google\Google Chrome - Policy Name: Allow media autoplay on a allowlist of URL patterns. - Policy State: Enabled - Policy Value 1: [*.]mil - Policy Value 2: [*.]gov Note: Policy values are examples. Finding DetailsEvaluate-STIG 1.2510.0 (Scan-GoogleChrome_Checks) found this to be NOT A FINDING on 12/17/2025 ResultHash: AAD1ABC02C91EED66628615D9BAF76514E0BC7FE ~~~~~ Registry key for HKLM:SOFTWARE\Policies\Google\Chrome\AutoplayAllowlist exists. Current values: 1 : [*.]mil 2 : [*.]gov
Source: MONT-SW-89134_Chrome_V2R11_20251217-200930.ckl
Scan Date: 2026-03-04T15:25:41.812659
Technology Area: Windows Operating System
|
||||||||