CVE-2024-8909: Inappropriate implementation in UI
Chromium: CVE-2024-8909 Inappropriate implementation in UI
Other sources
Inappropriate implementation in UI in Google Chrome on iOS prior to 129.0.6668.58 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Low)
— MITRE
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
— Microsoft
Credit
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2024-8909?
CVE-2024-8909 has been classified with a medium severity level.
How do I fix CVE-2024-8909?
To fix CVE-2024-8909, ensure that your Google Chrome or Microsoft Edge browser is updated to the latest version.
Which versions are affected by CVE-2024-8909?
CVE-2024-8909 affects Chrome versions prior to 129.0.6668.58 and certain versions of Chromium-based Microsoft Edge.
Can CVE-2024-8909 affect my web applications?
CVE-2024-8909 may indirectly affect web applications if users are using vulnerable browser versions.
Is CVE-2024-8909 resolved in the latest browser updates?
Yes, CVE-2024-8909 has been addressed in the latest updates of both Google Chrome and Microsoft Edge.