CVE-2024-1676: Inappropriate implementation in Navigation
Chromium: CVE-2024-1676 Inappropriate implementation in Navigation
Other sources
Inappropriate implementation in Navigation in Google Chrome prior to 122.0.6261.57 allowed a remote attacker to spoof security UI via a crafted HTML page. (Chromium security severity: Low)
— MITRE
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
— Microsoft
Credit
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Google Chrome (Trace Event)to a version that resolves this vulnerability.Fixed in 122.0.6261.57 - Upgrade
Upgrade
Chromium / Google Chrome (Chromium-based Edge ingests Chromium)to a version that resolves this vulnerability.Fixed in 122.0.6261.57
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What types of issues does CVE-2024-1676 relate to?
CVE-2024-1676 relates to inappropriate implementation within the affected browsers.