CVE-2026-13977
EUVD-2026-4066530.06.2026, 23:17
Inappropriate implementation in HTMLParser in Google Chrome prior to 150.0.7871.47 allowed a remote attacker to inject arbitrary scripts or HTML (UXSS) via a crafted HTML page. (Chromium security severity: Medium)
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| chrome | 𝑥 < 150.0.7871.47 |
𝑥
= Vulnerable software versions
Debian Releases