CyberRota Analysis
AI-GeneratedA vulnerability in the HTML implementation of Google Chrome prior to version 151.0.7922.72 allows remote attackers to bypass the content security policy through specially crafted HTML pages. This could lead to unauthorized access to sensitive data or execution of malicious scripts within the browser. Organizations using affected versions of Chrome should prioritize updating to mitigate potential exploitation risks.
CVE
CVE-2026-17674
Severity
MEDIUM
CVSS
6.5
EPSS
0.41%
Chrome
Original NVD Description
Inappropriate implementation in HTML in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to bypass content security policy via a crafted HTML page. (Chromium security severity: High)
Related CVEs
Other vulnerabilities affecting the same vendor(s)