CVE-2013-0840: Google Chrome
High severity, CVSS 10.0. EPSS: 1% chance of exploitation in the next 30 days.
Google Chrome before 24.0.1312.56 does not validate URLs during the opening of new windows, which has unspecified impact and remote attack vectors.
Affected products
- Google Chrome: up to and including 24.0.1312.55; version 24.0.1272.0 only; version 24.0.1272.1 only; version 24.0.1273.0 only; version 24.0.1274.0 only; version 24.0.1275.0 only; …
Published 2013-01-24. Last modified 2026-06-16.