CVE-2023-2466: Inappropriate implementation in Prompts
Chromium: CVE-2023-2466 Inappropriate implementation in Prompts
Other sources
Inappropriate implementation in Prompts in Google Chrome prior to 113.0.5672.63 allowed a remote attacker to spoof the contents of the security UI via a crafted HTML page. (Chromium security severity: Low)
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
Credit
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2023-2466?
CVE-2023-2466 has been categorized as a high-severity vulnerability affecting Chromium-based browsers.
How do I fix CVE-2023-2466?
To fix CVE-2023-2466, update your Chromium-based browser to the latest version available.
Which software is affected by CVE-2023-2466?
CVE-2023-2466 affects Chromium, Google Chrome, and Chromium-based versions of Microsoft Edge.
Are older versions of Chromium vulnerable to CVE-2023-2466?
Yes, any version below 113.0.5672.63 of Chromium and related browsers are considered vulnerable to CVE-2023-2466.
Is there a known exploit for CVE-2023-2466?
Yes, there are indications that CVE-2023-2466 is being actively exploited in the wild.