Security Advisory

CVE-2024-9964

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2024-10-15 20:14:56
Last updated 2025-03-25 16:20:45
Assigner Chrome
CVSS score not scored
State PUBLISHED

Description

Inappropriate implementation in Payments in Google Chrome prior to 130.0.6723.58 allowed a remote attacker who convinced a user to engage in specific UI gestures to perform UI spoofing via a crafted Chrome Extension. (Chromium security severity: Low)