vulnerability

Microsoft Edge Chromium: CVE-2022-1130 Insufficient validation of untrusted input in WebOTP

Severity
9
CVSS
(AV:N/AC:M/Au:N/C:N/I:C/A:C)
Published
Apr 4, 2022
Added
Apr 4, 2022
Modified
Jan 28, 2025

Description

Insufficient validation of trust input in WebOTP in Google Chrome on Android prior to 100.0.4896.60 allowed a remote attacker to send arbitrary intents from any app via a malicious app.

Solution

microsoft-edge-upgrade-latest
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.