CVE-2022-0309: Inappropriate implementation in Autofill
Published Aug 17, 2021
·Updated
Inappropriate implementation in Autofill in Google Chrome prior to 97.0.4692.99 allowed a remote attacker to bypass navigation restrictions via a crafted HTML page.
Credit
Alesandro Ortiz
Affected Software
2 affected componentsFixes available
Google Chrome<97.0.4692.99
97.0.4692.99
Google Chrome<97.0.4692.99
Event History
Aug 17, 2021
CVE Published
12:00 AM
Feb 12, 2022
CVE Published
via MITRE·01:36 AM
Data Sourced
via MITRE·01:36 AM
DescriptionWeakness
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
1
What is the severity of CVE-2022-0309?
CVE-2022-0309 is rated as a high-severity vulnerability allowing remote attackers to execute a bypass of navigation restrictions.
2
How do I fix CVE-2022-0309?
To fix CVE-2022-0309, users should update Google Chrome to version 97.0.4692.99 or later.
3
What type of attack is possible with CVE-2022-0309?
CVE-2022-0309 allows a remote attacker to bypass navigation restrictions through a crafted HTML page.
4
Which versions of Google Chrome are affected by CVE-2022-0309?
CVE-2022-0309 affects all versions of Google Chrome prior to 97.0.4692.99.
5
Who is the vendor for CVE-2022-0309?
The vendor for CVE-2022-0309 is Google, specifically related to the Chrome browser.