Skip to main content

CVE-2023-4860

Severity High
Score 9.6/10

Summary

Inappropriate implementation in Skia in Google Chrome versions prior to 115.0.5790.98 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page.

  • LOW
  • NETWORK
  • HIGH
  • CHANGED
  • REQUIRED
  • NONE
  • HIGH
  • HIGH

Advisory Timeline

  • Published