CVE-2023-5186

CVSS 3.1 Score 8.8 of 10 (high)

Details

Published Sep 28, 2023
Updated: Jan 31, 2024
CWE ID 416

Summary

CVE-2023-5186 is a high severity vulnerability affecting Google Chrome versions prior to 117.0.5938.132. An attacker can exploit this use-after-free issue in the Passwords feature to potentially corrupt the heap memory through crafted UI interactions. Successful exploitation may allow the attacker to execute arbitrary code or cause the browser to crash. Users are advised to update Google Chrome as soon as possible to protect against potential attacks.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share