Security Advisory

CVE-2024-8906

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2024-09-17 21:07:19
Last updated 2025-03-25 16:10:43
Assigner Chrome
CVSS score not scored
State PUBLISHED

Description

Incorrect security UI in Downloads in Google Chrome prior to 129.0.6668.58 allowed a remote attacker who convinced a user to engage in specific UI gestures to perform UI spoofing via a crafted HTML page. (Chromium security severity: Medium)