Inappropriate implementation in Extensions API in Google Chrome prior to 121.0.6167.85 allowed an attacker who convinced a user to install a malicious extension to leak cross-origin data via a crafted Chrome Extension. (Chromium security severity: Low)
Metrics
Affected Vendors & Products
References
History
Mon, 16 Jun 2025 19:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|

Status: PUBLISHED
Assigner: Chrome
Published: 2024-01-23T23:53:01.437Z
Updated: 2025-06-16T18:31:56.329Z
Reserved: 2024-01-23T00:47:26.806Z
Link: CVE-2024-0811

Updated: 2024-08-01T18:18:18.589Z

Status : Modified
Published: 2024-01-24T00:15:08.117
Modified: 2025-06-16T19:15:29.827
Link: CVE-2024-0811

No data.