Insufficient validation of trust input in WebOTP in Google Chrome on Android prior to 100.0.4896.60 allowed a remote attacker to send arbitrary intents from any app via a malicious app.
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-1130.json"
[ { "events": [ { "introduced": "0" }, { "fixed": "100.0.4896.60" } ] } ]