Inappropriate implementation in CORS in Google Chrome prior to 151.0.7922.169 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted HTML page. (Chromium security severity: High)
References
| Link | Resource |
|---|---|
| https://chromereleases.googleblog.com/2026/08/stable-channel-update-for-desktop_0826575033.html | Release Notes Vendor Advisory |
| https://issues.chromium.org/issues/516715010 | Permissions Required |
Configurations
History
No history.
Information
Published : 2026-08-18 21:18
Updated : 2026-08-20 19:25
NVD link : CVE-2026-76033
Mitre link : CVE-2026-76033
CVE.ORG link : CVE-2026-76033
JSON object : View
Products Affected
- chrome
CWE
CWE-20
Improper Input Validation
