CyberRota Analysis
AI-GeneratedA vulnerability in the DataTransfer component of Google Chrome prior to version 153.0.8010.36 allows remote attackers to execute arbitrary code outside the sandbox by exploiting a compromised renderer process through a specially crafted HTML page. This poses a medium security risk, particularly for organizations relying on Chrome for web applications and services. Users and administrators should prioritize updating to the latest version to mitigate potential exploitation.
Original NVD Description
Confused deputy in DataTransfer in Google Chrome prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)
Related CVEs
Other vulnerabilities affecting the same vendor(s)