Medium severity4.3NVD Advisory· Published Nov 14, 2025· Updated Jun 17, 2026
CVE-2024-13178
CVE-2024-13178
Description
Inappropriate implementation in Fullscreen in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Medium)
Affected products
5- osv-coords2 versions
< 128.0.6613.84-r0+ 1 more
- (no CPE)range: < 128.0.6613.84-r0
- (no CPE)range: < 128.0.6613.84-r0
Patches
Vulnerability mechanics
References
2- issues.chromium.org/issues/40068607nvdExploitIssue TrackingThird Party Advisory
- chromereleases.googleblog.com/2024/08/stable-channel-update-for-desktop_21.htmlnvdRelease NotesVendor Advisory
News mentions
0No linked articles in our index yet.