CVE Database
/

CVE-2023-4078

Back to search

CVE-2023-4078

Published: Aug 3, 2023

Modified: Feb 13, 2025

PUBLISHED

Description

Inappropriate implementation in Extensions in Google Chrome prior to 115.0.5790.170 allowed an attacker who convinced a user to install a malicious extension to inject scripts or HTML into a privileged page via a crafted Chrome Extension. (Chromium security severity: Medium)

VendorProductVersions

Google

Chrome

affected
115.0.5790.170 - < 115.0.5790.170

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now