Lucene search

K
cvelistNaverCVELIST:CVE-2022-24074
HistoryMar 17, 2022 - 5:20 a.m.

CVE-2022-24074

2022-03-1705:20:16
CWE-668
naver
www.cve.org
6
whale bridge
extension
vulnerability
security

AI Score

9.5

Confidence

High

EPSS

0.002

Percentile

58.3%

Whale Bridge, a default extension in Whale browser before 3.12.129.18, allowed to receive any SendMessage request from the content script itself that could lead to controlling Whale Bridge if the rendering process compromises.

CNA Affected

[
  {
    "product": "NAVER Whale browser",
    "vendor": "NAVER",
    "versions": [
      {
        "lessThan": "3.12.129.46",
        "status": "affected",
        "version": "unspecified",
        "versionType": "custom"
      }
    ]
  }
]

AI Score

9.5

Confidence

High

EPSS

0.002

Percentile

58.3%

Related for CVELIST:CVE-2022-24074