CVE-2022-1867: Google Chrome

Medium severity, CVSS 6.5. EPSS: 0.9% chance of exploitation in the next 30 days.

Insufficient validation of untrusted input in Data Transfer in Google Chrome prior to 102.0.5005.61 allowed a remote attacker to bypass same origin policy via a crafted clipboard content.

Affected products

  • Google Chrome: before 102.0.5005.61 (fixed in 102.0.5005.61)

Published 2022-07-27. Last modified 2026-06-17.