CVE-2024-5274

Published May 28, 2024

Last updated 6 months ago

Overview

Description
Type Confusion in V8 in Google Chrome prior to 125.0.6422.112 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
Source
chrome-cve-admin@google.com
NVD status
Analyzed
Products
chrome, fedora

Risk scores

CVSS 3.1

Type
Primary
Base score
9.6
Impact score
6
Exploitability score
2.8
Vector string
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H
Severity
CRITICAL

Known exploits

Data from CISA

Vulnerability name
Google Chromium V8 Type Confusion Vulnerability
Exploit added on
May 28, 2024
Exploit action due
Jun 18, 2024
Required action
Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Weaknesses

nvd@nist.gov
CWE-843
134c704f-9b21-4f2e-91b3-4a467353bcc0
CWE-843

Social media

Hype score
Not currently trending
  1. Critical alert for #Debian users: DSA-6010-1 patches an actively exploited zero-day in Chromium (CVE-2024-5274). Read more: 👉 https://t.co/R6zgdNtY2p #Security https://t.co/VacT3Aog1H

    @Cezar_H_Linux

    26 Sept 2025

    7 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  2. CVE-2024-5274 تقييم الخطورة: 9.8 / 10 🔥 بدون أي تفاعل من الضحية (0-click) الاستغلال بيتم من خلال media stream خبيث على صفحة ويب Windows, Linux, macOS الإصدارات المتأثرة: 🔻 Firefox < 139

    @_ZeroSecurity_

    1 Jun 2025

    91 Impressions

    0 Retweets

    2 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  3. Outdated Chrome (CVE-2024-5274) almost handed attackers the keys to our client’s system—until Watchdog stepped in. Visibility isn’t just power; it’s protection. Get a trial cybersecurity posture scan and see what’s lurking in your environment. #CyberSecurity #KahuLabs #exploit ht

    @KahuLabs_

    13 Dec 2024

    11 Impressions

    0 Retweets

    1 Like

    0 Bookmarks

    0 Replies

    1 Quote

  4. 🔴 #Google #Chrome, Type Confusion, #CVE-2024-5274 (Critical) - Critical https://t.co/jxFVXFxbgT

    @dailycve

    27 Nov 2024

    22 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  5. 🚨 Attention Chrome Users! 🚨 Critical zero-day vulnerabilities (CVE-2024-0519, CVE-2024-5274) exploited in attacks! 😱 These can lead to code execution and data theft. 📥 Update Chrome to v125.0.6422.112+ immediately! Stay safe and secure. 🛡️ #CyberSafety #ChromeUpdate 🔗… ht

    @innoworkspro

    22 Nov 2024

    23 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  6. NVD highlights CVE-2024-5274 in Google Chrome's V8 engine. This critical flaw may allow arbitrary code execution—update your browser ASAP! #CyberAlert #ChromeUpdate Source: The Sun

    @mysticvoyager42

    2 Nov 2024

    276 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    1 Quote

Configurations