First published: Sat Nov 26 2022(Updated: )
Inappropriate implementation in Download in Google Chrome prior to 110.0.5481.77 allowed a remote attacker to potentially spoof the contents of the Omnibox (URL bar) via a crafted HTML page. (Chromium security severity: Medium)
Credit: Axel Chong chrome-cve-admin@google.com
Affected Software | Affected Version | How to fix |
---|---|---|
Google Chrome (Trace Event) | <110.0.5481.77 | 110.0.5481.77 |
Google Chrome (Trace Event) | <110.0.5481.77 | |
Google Chrome | <110.0.5481.77 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
The severity of CVE-2023-0700 is categorized as Medium.
To resolve CVE-2023-0700, update Google Chrome to version 110.0.5481.77 or later.
An attacker can potentially spoof the contents of the Omnibox (URL bar) via a crafted HTML page.
CVE-2023-0700 affects Google Chrome versions prior to 110.0.5481.77.
CVE-2023-0700 is specifically applicable to the desktop version of Google Chrome.