CVE-2024-11110: High Inappropriate implementation in Blink
Chromium: CVE-2024-11110 Inappropriate implementation in Blink
Other sources
Inappropriate implementation in Extensions in Google Chrome prior to 131.0.6778.69 allowed a remote attacker to bypass site isolation via a crafted Chrome Extension. (Chromium security severity: High)
— MITRE
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
— Microsoft
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-11110?
The severity of CVE-2024-11110 is categorized as high.
How do I fix CVE-2024-11110?
To fix CVE-2024-11110, update your Microsoft Edge or Google Chrome to the latest version.
Which versions of Microsoft Edge are affected by CVE-2024-11110?
Microsoft Edge versions prior to 131.0.2903.48 are affected by CVE-2024-11110.
Is Google Chrome vulnerable to CVE-2024-11110?
Yes, Google Chrome versions below 131.0.6778.69 are considered vulnerable to CVE-2024-11110.
What type of vulnerability is CVE-2024-11110?
CVE-2024-11110 is categorized as an inappropriate implementation vulnerability.