Inappropriate implementation in Extensions API in Google Chrome prior to 104.0.5112.101 allowed an attacker who convinced a user to install a malicious extension to inject arbitrary scripts into WebUI via a crafted HTML page.
[ { "events": [ { "introduced": "0" }, { "fixed": "104.0.5112.101" } ] }, { "events": [ { "introduced": "0" }, { "last_affected": "37" } ] } ]
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-2861.json"