9.6
CVE-2026-76035
- EPSS 0.42%
- Veröffentlicht 18.08.2026 20:31:26
- Zuletzt bearbeitet 24.08.2026 17:14:25
- Erkennungen
Inappropriate implementation in Media in Google Chrome on on Mac prior to 151.0.7922.169 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.42% | 0.355 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| CISA-ADP | 9.6 | 2.8 | 6 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H
|
CWE-20 Improper Input Validation
The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.
https://chromereleases.googleblog.com/2026/08/stable-channel-update-for-desktop_0826575033.html
https://issues.chromium.org/issues/536439844