Use after free in Autofill in Google Chrome on Windows prior to 149.0.7827.197 allowed a remote attacker to execute arbitrary code via a crafted HTML page. (Chromium security severity: Critical)
| Vendor | Product | Versions |
|---|---|---|
| chrome | 149.0.7827.197 |
Downstream vendors/products affected by this vulnerability
| Vendor | Product | Source | Confidence |
|---|---|---|---|
| chrome | cert_advisory | 90% | |
| microsoft | windows | cve_cpe | 95% |
Updated exploit availability to true and marked the vulnerability as actively exploited.
Updated affected versions to include 149.0.7827.155 and changed severity to CRITICAL.
Initial creation