First published: Mon Sep 23 2024(Updated: )
Inappropriate implementation in Autofill in Google Chrome prior to 124.0.6367.60 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Low)
Credit: chrome-cve-admin@google.com
Affected Software | Affected Version | How to fix |
---|---|---|
Google Chrome (Trace Event) | <124.0.6367.60 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-7020 has a low severity rating according to Chromium security standards.
To fix CVE-2024-7020, ensure you update Google Chrome to version 124.0.6367.60 or later.
CVE-2024-7020 involves a UI spoofing vulnerability due to inappropriate implementation in the Autofill feature of Google Chrome.
Users of Google Chrome versions prior to 124.0.6367.60 are affected by CVE-2024-7020.
Yes, CVE-2024-7020 can be exploited remotely through a crafted HTML page.