CVE-2024-9120

CVSS 3.1 Score 8.8 of 10 (high)

Details

Published Sep 25, 2024
Updated: Jan 2, 2025
CWE ID 416

Summary

CVE-2024-9120 is a new vulnerability affecting Google Chrome on Windows before version 129.0.6668.70. This high-severity issue involves a use-after-free flaw in Dawn, a component of Chrome. Maliciously crafted HTML pages can trigger heap corruption, potentially allowing remote attackers to exploit this vulnerability. Users are urged to update Chrome to the latest version to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share