CVE-2024-11110
CVSS 3.1 Score 6.5 of 10 (medium)
Details
Summary
CVE-2024-11110 represents a high-severity vulnerability in Google Chrome's Extensions before version 131.0.6778.69. An inappropriate implementation led to a bypass of site isolation, allowing remote attackers to gain unauthorized access to sensitive data from different websites. This could potentially result in information leakage or other malicious activities. Attackers could exploit this flaw by crafting a malicious Chrome Extension, which could then interact with other sites in ways that should have been isolated. Users are strongly advised to update their Chrome browsers to the latest version to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.