CVE-2022-3201
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
Insufficient validation of untrusted input in DevTools in Google Chrome on Chrome OS prior to 105.0.5195.125 allowed an attacker who convinced a user to install a malicious extension to bypass navigation restrictions via a crafted HTML page. (Chromium security severity: High)
| Vendor | |
| Product | chrome |
| Ecosystems | |
| Industries | Technology |
| Published | Sep 26, 2022 |
| Last Updated | Aug 3, 2024 |
Stay Ahead of the Next One
Get instant alerts for google chrome
Be the first to know when new unknown vulnerabilities affecting google chrome are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
Google / Chrome
unspecified < 105.0.5195.125
References
chromereleases.googleblog.com: https://chromereleases.googleblog.com/2022/09/stable-channel-update-for-desktop_14.html crbug.com: https://crbug.com/1343104 security.gentoo.org: https://security.gentoo.org/glsa/202209-23 debian.org: https://www.debian.org/security/2022/dsa-5244 security.gentoo.org: https://security.gentoo.org/glsa/202210-16 lists.fedoraproject.org: https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/T4NMJURTG5RO3TGD7ZMIQ6Z4ZZ3SAVYE/ security.gentoo.org: https://security.gentoo.org/glsa/202311-11