CVE-2022-0120

MEDIUM

Google Chrome <97.0.4692.71 - XSS

Title source: llm

Description

Inappropriate implementation in Passwords in Google Chrome prior to 97.0.4692.71 allowed a remote attacker to potentially leak cross-origin data via a malicious website.

Scores

CVSS v3 6.5
EPSS 0.0026
EPSS Percentile 49.3%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N

Classification

CWE
CWE-346
Status published

Affected Products (4)

google/chrome < 97.0.4692.71
fedoraproject/fedora
fedoraproject/fedora
fedoraproject/fedora

Timeline

Published Feb 12, 2022
Tracked Since Feb 18, 2026