CVE-2023-2459: Inappropriate implementation in Prompts
Chromium: CVE-2023-2459 Inappropriate implementation in Prompts
Other sources
Inappropriate implementation in Prompts in Google Chrome prior to 113.0.5672.63 allowed a remote attacker to bypass permission restrictions via a crafted HTML page. (Chromium security severity: Medium)
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
Credit
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2023-2459?
CVE-2023-2459 is classified as a high severity vulnerability affecting various versions of Chromium-based browsers.
How do I fix CVE-2023-2459?
To fix CVE-2023-2459, ensure that you update your Chromium-based browsers to the latest version available.
Which software is affected by CVE-2023-2459?
CVE-2023-2459 affects Google Chrome versions prior to 113.0.5672.63 and Microsoft Edge versions prior to 113.0.1774.35.
Is there a workaround for CVE-2023-2459?
There are no specific workarounds for CVE-2023-2459; updating to patched versions is the recommended solution.
Who is responsible for addressing CVE-2023-2459?
CVE-2023-2459 was assigned by Chrome, and updates are provided by browser vendors like Google and Microsoft.