Google Chrome
cpe:2.3:a:google:chrome:*:*:*:*:*:*:*, +1 more
- < 148.0.7778.216
A vulnerability in Google Chrome's OptimizationGuide component, present in versions prior to 148.0.7778.216, allows remote attackers who have compromised the renderer process to perform UI spoofing. This is achieved through insufficient validation of untrusted input, enabling the creation of a crafted HTML page that can manipulate the user interface.
Exploitation of this vulnerability could lead to UI spoofing, where an attacker can create a misleading representation of the user interface, potentially causing users to make unintended decisions or actions.
Users can update to Google Chrome version 148.0.7778.216 or later to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.