CVE-2022-0106: Fedoraproject Fedora
High severity, CVSS 8.8. EPSS: 1.3% chance of exploitation in the next 30 days.
Use after free in Autofill in Google Chrome prior to 97.0.4692.71 allowed a remote attacker who convinced a user to perform specific user gesture to potentially exploit heap corruption via a crafted HTML page.
Affected products
- Fedoraproject Fedora: version 34 only; version 35 only; version 36 only
- Google Chrome: before 97.0.4692.71 (fixed in 97.0.4692.71)
Published 2022-02-12. Last modified 2026-06-17.