CVE-2022-4922: Inappropriate implementation in Blink
Published Oct 19, 2021
·Updated
Inappropriate implementation in Blink in Google Chrome prior to 99.0.4844.51 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Medium)
Credit
Thomas Orlita
Affected Software
2 affected componentsFixes available
Google Chrome<99.0.4844.51
99.0.4844.51
Google Chrome<99.0.4844.51
Event History
Oct 19, 2021
CVE Published
12:00 AM
Jul 28, 2023
CVE Published
via MITRE·11:26 PM
Data Sourced
via MITRE·11:26 PM
DescriptionWeakness
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
1
What is the severity of CVE-2022-4922?
The severity of CVE-2022-4922 is classified as Medium.
2
How do I fix CVE-2022-4922?
To fix CVE-2022-4922, update Google Chrome to version 99.0.4844.51 or later.
3
What type of attack does CVE-2022-4922 allow?
CVE-2022-4922 allows a remote attacker to perform UI spoofing via a crafted HTML page.
4
Which versions of Google Chrome are affected by CVE-2022-4922?
Google Chrome versions prior to 99.0.4844.51 are affected by CVE-2022-4922.
5
In which component of Google Chrome does CVE-2022-4922 exist?
CVE-2022-4922 exists in the Blink component of Google Chrome.