Inappropriate Implementation in DevTools in Google Chrome prior to 126.0.6478.54 allowed an attacker who convinced a user to install a malicious extension to execute arbitrary code via a crafted Chrome Extension. (Chromium security severity: High)
No PoCs from references.
- https://github.com/ading2210/CVE-2024-6778-POC
- https://github.com/gmh5225/vulnjs
- https://github.com/wh1ant/vulnjs