CVE-2023-0139

Insufficient validation of untrusted input in Downloads in Google Chrome on Windows prior to 109.0.5414.74 allowed a remote attacker to bypass download restrictions via a crafted HTML page. (Chromium security severity: Low)
References
Link Resource
https://chromereleases.googleblog.com/2023/01/stable-channel-update-for-desktop.html Release Notes Vendor Advisory
https://crbug.com/1367632 Issue Tracking Permissions Required Vendor Advisory
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

Information

Published : 2023-01-10 12:15

Updated : 2023-01-17 09:18


NVD link : CVE-2023-0139

Mitre link : CVE-2023-0139


JSON object : View

CWE
CWE-20

Improper Input Validation

Advertisement

dedicated server usa

Products Affected

google

  • chrome

microsoft

  • windows