CVE-2023-5480: Inappropriate implementation in Payments
Chromium: CVE-2023-5480 Inappropriate implementation in Payments
Other sources
Inappropriate implementation in Payments in Google Chrome prior to 119.0.6045.105 allowed a remote attacker to bypass XSS preventions via a malicious file. (Chromium security severity: High)
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
— Microsoft
Credit
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2023-5480.
What is the severity of CVE-2023-5480?
The severity of CVE-2023-5480 is High.
What is the affected software?
The affected software includes Microsoft Edge (Chromium-based) version up to 119.0.2151.44.
How can I fix CVE-2023-5480?
To fix CVE-2023-5480, update to Microsoft Edge (Chromium-based) version 119.0.6045.105 or later.
Where can I find more information about CVE-2023-5480?
You can find more information about CVE-2023-5480 at the following references: [Google Chrome Releases](https://chromereleases.googleblog.com/2023/10/stable-channel-update-for-desktop_31.html), [Chromium Bug Tracker](https://crbug.com/1492698), [Microsoft Security Response Center](https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-5480).