Insufficient policy enforcement in DevTools in Google Chrome on Windows prior to 103.0.5060.53 allowed an attacker who convinced a user to install a malicious extension to obtain potentially sensitive information from a user's local files via a crafted HTML page.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: Chrome
Published: 2022-07-28T00:40:37
Updated: 2024-08-03T00:32:08.612Z
Reserved: 2022-06-21T00:00:00
Link: CVE-2022-2160
Vulnrichment
No data.
NVD
Status : Modified
Published: 2022-07-28T01:15:16.917
Modified: 2024-11-21T07:00:26.883
Link: CVE-2022-2160
Redhat
No data.