CVE-2024-0814

CVSS 3.1 Score 6.5 of 10 (medium)

Details

Published Jan 24, 2024
Updated: Jan 29, 2024
CWE ID 346

Summary

CVE-2024-0814 refers to a medium severity vulnerability in Google Chrome's Payments feature before version 121.0.6167.85. This issue involved incorrect security UI that enabled a remote attacker to potentially spoof security UI through a specially crafted HTML page. The risk of exploitation required user interaction with the malicious page, but successful exploitation could have significant security implications for users. Chrome's security team has addressed this vulnerability in a recent update.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share