CVE-2023-3733: Inappropriate implementation in WebApp Installs
Chromium: CVE-2023-3733 Inappropriate implementation in WebApp Installs
Other sources
Inappropriate implementation in WebApp Installs in Google Chrome prior to 115.0.5790.98 allowed a remote attacker to potentially spoof the contents of the Omnibox (URL bar) via a crafted HTML page. (Chromium security severity: Medium)
— MITRE
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
Credit
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2023-3733?
The severity of CVE-2023-3733 is classified as high due to potential exploitation risks.
How do I fix CVE-2023-3733?
To fix CVE-2023-3733, update Microsoft Edge to version 115.0.1901.183 or Google Chrome to version 115.0.5790.98.
What types of software are affected by CVE-2023-3733?
CVE-2023-3733 affects both Microsoft Edge (Chromium-based) and Google Chrome versions prior to the specified updates.
Who reported CVE-2023-3733?
CVE-2023-3733 was reported by the Chrome security team.
Is there a workaround for CVE-2023-3733?
There are no known workarounds for CVE-2023-3733, the best action is to apply the recommended updates.