CVE-2024-1694: Google Updater

High severity, CVSS 7.8. EPSS: 0.2% chance of exploitation in the next 30 days.

Inappropriate implementation in Google Updator prior to 1.3.36.351 in Google Chrome allowed a local attacker to bypass discretionary access control via a malicious file. (Chromium security severity: High)

Affected products

  • Google Updater: before 1.3.36.351 (fixed in 1.3.36.351)

Published 2024-06-07. Last modified 2026-06-17.