CVE-2022-0806: Google Chrome

Medium severity, CVSS 6.5. EPSS: 1% chance of exploitation in the next 30 days.

Data leak in Canvas in Google Chrome prior to 99.0.4844.51 allowed a remote attacker who convinced a user to engage in screen sharing to potentially leak cross-origin data via a crafted HTML page.

Affected products

  • Google Chrome: before 99.0.4844.51 (fixed in 99.0.4844.51)

Published 2022-04-05. Last modified 2026-06-17.