Description
Whale browser before 3.26.244.21 allows an attacker to execute malicious JavaScript due to improper sanitization when processing a built-in extension.
Problem types
CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Product status
3.26.244.21
Credits
James Dean (YSK)
References
cve.naver.com/detail/cve-2024-40618.html (NAVER Security Advisory)