CVE-2024-40618: XSS
Published Jul 11, 2024
·Updated
Whale browser before 3.26.244.21 allows an attacker to execute malicious JavaScript due to improper sanitization when processing a built-in extension.
Affected Software
1 affected component
Whale Whale Browser<3.26.244.21
Event History
Jul 11, 2024
CVE Published
via MITRE·01:24 AM
Data Sourced
via MITRE·01:24 AM
DescriptionWeakness
Data Sourced
via NVD·02:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-40618?
CVE-2024-40618 is considered a high severity vulnerability due to its potential for executing malicious JavaScript.
2
How do I fix CVE-2024-40618?
To mitigate CVE-2024-40618, update Whale browser to version 3.26.244.21 or later.
3
What type of attack does CVE-2024-40618 allow?
CVE-2024-40618 allows attackers to execute malicious JavaScript via improperly sanitized input.
4
What versions of Whale browser are affected by CVE-2024-40618?
Whale browser versions prior to 3.26.244.21 are affected by CVE-2024-40618.
5
Is there a workaround for CVE-2024-40618?
The best workaround for CVE-2024-40618 is to avoid using affected versions and to apply the latest updates.