CVE-2026-11241
Google Chrome, chrome, macos
Insufficient validation of untrusted input in Cast in Google Chrome prior to 149.0.7827.53 allowed an attacker on the local network segment to perform privilege escalation via a crafted HTML page. (Chromium security severity: Low)
- CVSS
- 8
- EPSS
- 0.11% 1.58% percentile
- CISA KEV
- Not listed
- Published
- 2026.06.05