CVE-2023-3738: Inappropriate implementation in Autofill
Chromium: CVE-2023-3738 Inappropriate implementation in Autofill
Other sources
Inappropriate implementation in Autofill in Google Chrome prior to 115.0.5790.98 allowed a remote attacker to obfuscate security UI via a crafted HTML page. (Chromium security severity: Medium)
— MITRE
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
Credit
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2023-3738?
CVE-2023-3738 has been classified as a high severity vulnerability affecting certain versions of Chromium-based browsers.
How do I fix CVE-2023-3738?
To mitigate CVE-2023-3738, users should update their Microsoft Edge or Google Chrome browsers to the latest versions.
What versions are affected by CVE-2023-3738?
CVE-2023-3738 affects Microsoft Edge up to version 115.0.1901.183 and Google Chrome up to version 115.0.5790.98.
Which browsers are impacted by CVE-2023-3738?
CVE-2023-3738 impacts browsers built on the Chromium engine, specifically Microsoft Edge and Google Chrome.
Is there a known exploit for CVE-2023-3738?
As of now, there are no public reports of active exploits being used in the wild for CVE-2023-3738.