CVE-2024-8907
17.09.2024, 21:15
Insufficient data validation in Omnibox in Google Chrome on Android prior to 129.0.6668.58 allowed a remote attacker who convinced a user to engage in specific UI gestures to inject arbitrary scripts or HTML (XSS) via a crafted set of UI gestures. (Chromium security severity: Medium)
Vendor | Product | Version |
---|---|---|
chrome | 𝑥 < 129.0.6668.58 |
𝑥
= Vulnerable software versions

Debian Releases