Inappropriate implementation in Picture In Picture in Google Chrome before 114.0.5735.90 allowed a remote attacker who had compromised the renderer process to spoof the contents of the Omnibox (URL bar) via a crafted HTML page. (Chromium security severity: Medium)
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
google chrome |