Inappropriate implementation in WebView in Google Chrome on Android prior to 149.0.7827.155 allowed a remote attacker to perform privilege escalation via a crafted HTML page. (Chromium security severity: High)
| Vendor | Product | Versions |
|---|---|---|
| chrome | 149.0.7827.155 |
Downstream vendors/products affected by this vulnerability
| Vendor | Product | Source | Confidence |
|---|---|---|---|
| android | cve_cpe | 95% | |
| chrome | cert_advisory | 90% |
Updated severity to CRITICAL, affected versions to include 149.0.7827.115, and noted that there is no exploit available.
Initial creation