cvedb.io
CVE-2022-24075
MEDIUM · CVSS 6.5
EPSS exploitation probability: 0%
Published 2022-03-17T06:15:06.950 · Last modified 2026-06-17T04:31:15.587

Summary

Whale browser before 3.12.129.18 allowed extensions to replace JavaScript files of the HWP viewer website which could access to local HWP files. When the HWP files were opened, the replaced script could read the files.

Affected products

navercorp — whale

Does this affect you?

Add your gear to cvedb and we'll alert you only when navercorp ships something exploited.

Check my exposure →

References

This product uses data from the NVD API but is not endorsed or certified by the NVD. Informational only; not professional security advice.