CVE-2020-7645: Google Chrome-Launcher

Critical severity, CVSS 9.8. EPSS: 1% chance of exploitation in the next 30 days.

All versions of chrome-launcher allow execution of arbitrary commands, by controlling the $HOME environment variable in Linux operating systems.

Affected products

  • Google Chrome-Launcher: before 0.13.2 (fixed in 0.13.2)

Published 2020-05-02. Last modified 2026-06-17.