CVE-2026-8516
EUVD-2026-3042714.05.2026, 20:17
Insufficient validation of untrusted input in DataTransfer in Google Chrome prior to 148.0.7778.168 allowed a remote attacker who convinced a user to engage in specific UI gestures to obtain potentially sensitive information from process memory via a crafted HTML page. (Chromium security severity: Critical)Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| chrome | 𝑥 < 148.0.7778.168 |
𝑥
= Vulnerable software versions
Debian Releases
Common Weakness Enumeration