Security Advisory

CVE-2023-0130

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-01-10 00:00:00
Last updated 2025-03-20 20:51:21
Assigner Chrome
State PUBLISHED

Description

Inappropriate implementation in in Fullscreen API in Google Chrome on Android prior to 109.0.5414.74 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page. (Chromium security severity: Medium)