CVE-2022-0802 Inappropriate implementation in Full screen mode in Google Chrome on Android prior to 99.0.4844.51 allowed a remote attacker to hide the contents of the Omnibox.
This issue was addressed by disabling Full screen mode by default. Insecure handling of cookies in the HTTP protocol in Google V8 5.0 and
CVE-2022-0806 Canvas data leak allowed remote attackers to potentially leak cross-origin data if a user becomes a screen-sharer.
This issue was addressed by forbidding cross-origin data sharing by default. Screen sharing with untrusted sites was previously possible in Google Chrome. This issue
CVE-2022-0796 An after free bug in Media in Google Chrome prior to 99.0.4844.51 could be exploited by a remote attacker.
CVE-2018-6042 had been reported as a possible instance of this issue, but it was later discovered that the reported instance was actually a
CVE-2022-0798 An attacker who convinced a user to install a malicious extension could exploit heap corruption on Chrome.
Note that with cross-origin resources, the risk of this issue is limited to the domain where the vulnerable extension is hosted. In addition, Chrome
CVE-2022-0467 Inappropriate Pointer Lock implementation allowed a remote attacker to bypass navigation restrictions.
A warning message about the security warning about the SSL/TLS protocol when accessing a Google site was displayed incorrectly in Pointer Lock in Google
Episode
00:00:00
00:00:00