Loading HuntDB...

GHSA-vv6j-ww6x-54gx

GitHub Security Advisory

Use after free in Animation

✓ GitHub Reviewed HIGH Has CVE

Advisory Details

CVE-2022-0609: Use after free in Animation

- https://chromereleases.googleblog.com/2022/02/stable-channel-update-for-desktop_14.html
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-0609

Google is aware of reports that exploits for CVE-2022-0609 exist in the wild.

The exploitation is known to be easy. The attack may be initiated remotely. No form of authentication is needed for a successful exploitation. It demands that the victim is doing some kind of user interaction. Technical details are unknown but an exploit is available.

There is currently little other public information on the issue other than it has been flagged as `High` severity.

Affected Packages

NuGet CefSharp.Common
Affected versions: 0 (fixed in 98.1.210)
NuGet CefSharp.OffScreen
Affected versions: 0 (fixed in 98.1.210)
NuGet CefSharp.WinForms
Affected versions: 0 (fixed in 98.1.210)
NuGet CefSharp.Wpf
Affected versions: 0 (fixed in 98.1.210)
NuGet CefSharp.Wpf.HwndHost
Affected versions: 0 (fixed in 98.1.210)
NuGet CefSharp.Common.NETCore
Affected versions: 0 (fixed in 98.1.210)
NuGet CefSharp.OffScreen.NETCore
Affected versions: 0 (fixed in 98.1.210)
NuGet CefSharp.WinForms.NETCore
Affected versions: 0 (fixed in 98.1.210)
NuGet CefSharp.Wpf.NETCore
Affected versions: 0 (fixed in 98.1.210)

Related CVEs

Key Information

GHSA ID
GHSA-vv6j-ww6x-54gx
Published
February 22, 2022 9:51 PM
Last Modified
April 12, 2022 3:14 PM
CVSS Score
7.5 /10
Primary Ecosystem
NuGet
Primary Package
CefSharp.Common
GitHub Reviewed
✓ Yes

Dataset

Last updated: November 25, 2025 6:29 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.