CVE-2023-3079
CVSS Score
8.8
EPSS Score
0.0%
EPSS Percentile
0th
Type confusion in V8 in Google Chrome prior to 114.0.5735.110 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
| Vendor | |
| Product | chrome |
| Ecosystems | |
| Industries | Technology |
| Published | Jun 5, 2023 |
| Last Updated | Oct 21, 2025 |
โ ๏ธ Actively Exploited โ Act Now
Get instant alerts for google chrome
This vulnerability is actively exploited in the wild. Set up free real-time alerts so you're first to know about threats like CVE-2023-3079.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
Google / Chrome
114.0.5735.110 < 114.0.5735.110
References
chromereleases.googleblog.com: https://chromereleases.googleblog.com/2023/06/stable-channel-update-for-desktop.html crbug.com: https://crbug.com/1450481 couchbase.com: https://www.couchbase.com/alerts/ debian.org: https://www.debian.org/security/2023/dsa-5420 lists.fedoraproject.org: https://lists.fedoraproject.org/archives/list/[email protected]/message/DYTXO5E3FI3I2ETDP3HF4SHYYTFMKMIC/ lists.fedoraproject.org: https://lists.fedoraproject.org/archives/list/[email protected]/message/U4OXTNIZY4JYHJT7CVLPAJQILI6BISVM/ security.gentoo.org: https://security.gentoo.org/glsa/202311-11 packetstormsecurity.com: http://packetstormsecurity.com/files/176211/Chrome-V8-Type-Confusion.html packetstormsecurity.com: http://packetstormsecurity.com/files/176212/Chrome-V8-Type-Confusion-New-Sandbox-Escape.html security.gentoo.org: https://security.gentoo.org/glsa/202401-34 cisa.gov: https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2023-3079