High severity8.8NVD Advisory· Published Jul 16, 2024· Updated Jun 17, 2026
CVE-2024-3172
CVE-2024-3172
Description
Insufficient data validation in DevTools in Google Chrome prior to 121.0.6167.85 allowed a remote attacker who convinced a user to engage in specific UI gestures to execute arbitrary code via a crafted HTML page. (Chromium security severity: High)
Affected products
4Patches
Vulnerability mechanics
References
2- issues.chromium.org/issues/40942152nvdExploitIssue Tracking
- chromereleases.googleblog.com/2024/01/stable-channel-update-for-desktop_23.htmlnvdVendor Advisory
News mentions
0No linked articles in our index yet.