← Back to browse · API

CVE-2022-2998

Severity
HIGH
CVSS
8.8
EPSS
0.30265
Risk score
45.79
CISA KEV
No
PoC
No
Published
2022-09-26
Modified
2025-05-21
First seen
2026-08-07
Aliases
EUVD-2022-35213, GHSA-F84Q-WWJH-MQ43
Products
Google:Chrome unspecified <104.0.5112.101
Sources
euvd EUVD-2022-35213

Description

Use after free in Browser Creation in Google Chrome prior to 104.0.5112.101 allowed a remote attacker who had convinced a user to engage in a specific UI interaction to potentially exploit heap corruption via a crafted HTML page.

References