Object lifecycle issue in DevTools in Google Chrome prior to 145.0.7632.159 allowed an attacker who convinced a user to install a malicious extension to potentially exploit heap corruption via a crafted Chrome Extension. (Chromium security severity: High)
The product contains a method that accesses an object but does not later invoke the element’s associated finalize/destructor method.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Chrome | * | 145.0.7632.159 (excluding) |