← Back to CVE search

CVE-2026-8005

Google Chrome

Description

Insufficient validation of untrusted input in Cast in Google Chrome prior to 148.0.7778.96 allowed an attacker on the local network segment to bypass same origin policy via malicious network traffic. (Chromium security severity: Low)

CVSS 4.3EPSS 0.104%Risk 0.43
View source
Published
2026-05-06 19:16:51
Affected versions
<148.0.7778.96
Type
Core software
Vector
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Operating systems
Windows; MacOS; Linux