ZeroHour

CVE-2026-8005

CVSS 3.1
4.3 medium
EPSS
<1%p1
Published
()
Modified
Description

Insufficient validation of untrusted input in Cast in Google Chrome prior to 148.0.7778.96 allowed an attacker on the local network segment to bypass same origin policy via malicious network traffic. (Chromium security severity: Low)

Vendors
google
Products
chrome
Weakness
CWE-20
Vector
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.