Lucene search

K
cvelistChromeCVELIST:CVE-2023-2135
HistoryApr 19, 2023 - 3:40 a.m.

CVE-2023-2135

2023-04-1903:40:26
Chrome
www.cve.org
2
google chrome
devtools
vulnerability
remote attacker
heap corruption
html page

8.6 High

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

61.0%

Use after free in DevTools in Google Chrome prior to 112.0.5615.137 allowed a remote attacker who convinced a user to enable specific preconditions to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

CNA Affected

[
  {
    "vendor": "Google",
    "product": "Chrome",
    "versions": [
      {
        "version": "112.0.5615.137",
        "status": "affected",
        "lessThan": "112.0.5615.137",
        "versionType": "custom"
      }
    ]
  }
]

8.6 High

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

61.0%