CVE-2022-0116: Fedoraproject Fedora

Medium severity, CVSS 4.3. EPSS: 1.2% chance of exploitation in the next 30 days.

Inappropriate implementation in Compositing in Google Chrome prior to 97.0.4692.71 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page.

Affected products

  • Fedoraproject Fedora: version 34 only; version 35 only; version 36 only
  • Google Chrome: before 97.0.4692.71 (fixed in 97.0.4692.71)

Published 2022-02-12. Last modified 2026-06-17.