Medium severity6.5NVD Advisory· Published May 3, 2023· Updated Jun 17, 2026
CVE-2023-2459
CVE-2023-2459
Description
Inappropriate implementation in Prompts in Google Chrome prior to 113.0.5672.63 allowed a remote attacker to bypass permission restrictions via a crafted HTML page. (Chromium security severity: Medium)
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
11- osv-coords3 versionspkg:rpm/opensuse/chromium&distro=openSUSE%20Leap%2015.4pkg:rpm/suse/chromium&distro=SUSE%20Package%20Hub%2015%20SP4pkg:rpm/opensuse/chromium&distro=openSUSE%20Tumbleweed
< 113.0.5672.126-bp154.2.87.1+ 2 more
- (no CPE)range: < 113.0.5672.126-bp154.2.87.1
- (no CPE)range: < 113.0.5672.126-bp154.2.87.1
- (no CPE)range: < 113.0.5672.92-1.1
cpe:2.3:o:fedoraproject:fedora:36:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:o:fedoraproject:fedora:36:*:*:*:*:*:*:*
- cpe:2.3:o:fedoraproject:fedora:37:*:*:*:*:*:*:*
- cpe:2.3:o:fedoraproject:fedora:38:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
7- security.gentoo.org/glsa/202309-17nvdThird Party Advisory
- www.debian.org/security/2023/dsa-5398nvdThird Party Advisory
- chromereleases.googleblog.com/2023/05/stable-channel-update-for-desktop.htmlnvdRelease Notes
- crbug.com/1423304nvdIssue TrackingPermissions Required
- lists.fedoraproject.org/archives/list/[email protected]/message/6P5RJ6UD37IPBWU3GPQNMIUFVOVCGSLY/nvdMailing List
- lists.fedoraproject.org/archives/list/[email protected]/message/U3V6GPGMY6ZWVWPECMQGGOKQVATXJ5BA/nvdMailing List
- lists.fedoraproject.org/archives/list/[email protected]/message/Z4JI552XDFD6DYFU6WNCRBCAXWOFOOSF/nvdMailing List
News mentions
0No linked articles in our index yet.