Inappropriate implementation in WebApp Installer in Google Chrome prior to 95.0.4638.54 allowed a remote attacker to potentially overlay and spoof the contents of the Omnibox (URL bar) via a crafted HTML page.
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2021-37995.json"
[
{
"events": [
{
"introduced": "0"
},
{
"fixed": "95.0.4638.54"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "10.0"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "11.0"
}
]
}
]