EUVD-2022-35090
Insufficient validation of untrusted input in Intents in Google Chrome on Android prior to 104.0.5112.101 allowed a remote attacker to arbitrarily browse to a malicious website via a crafted HTML page.
- EUVD state
- Present in the current official mapping
- Known exploitation
- Recorded by ENISA since 18 Aug 2022. Evidence sources: cisa_kev.
- ENISA score
- 6.5 · CVSS 3.1
- Advisory evidence
- 4 linked advisory records
Only statements that explicitly mention a fix, patch, update, workaround or mitigation are shown here.
- csaf_opensuse · openSUSE-SU-2022:10109-1Security update for opera
- csaf_opensuse · openSUSE-SU-2022:10099-1Security update for chromium
- csaf_opensuse · openSUSE-SU-2022:10108-1Security update for opera
