CVE-2013-0922: Google Chrome

High severity, CVSS 7.5. EPSS: 0.8% chance of exploitation in the next 30 days.

Google Chrome before 26.0.1410.43 does not properly restrict brute-force access attempts against web sites that require HTTP Basic Authentication, which has unspecified impact and attack vectors.

Affected products

  • Google Chrome: up to and including 26.0.1410.42; version 26.0.1410.0 only; version 26.0.1410.1 only; version 26.0.1410.2 only; version 26.0.1410.3 only; version 26.0.1410.4 only; …

Published 2013-03-28. Last modified 2026-06-16.