CVE-2024-11111

CVSS 3.1 Score 4.3 of 10 (medium)

Details

Published Nov 12, 2024
Updated: Nov 13, 2024
CWE ID 79

Summary

CVE-2024-11111 is a medium severity vulnerability affecting Google Chrome's Autofill feature before version 131.0.6778.69. An attacker can exploit this issue by crafting a malicious HTML page and convincing a user to perform specific UI gestures. The vulnerability stems from an inappropriate implementation in Autofill, enabling the attacker to perform UI spoofing. Users are advised to update their Chrome browsers to the latest version to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share