CVE-2026-78900
Google Chrome, chrome
Improper input validation in Media in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)
- CVSS
- 9.6
- EPSS
- - - percentile
- CISA KEV
- Not listed
- Published
- 2026.08.26