CyberRota Analysis
AI-GeneratedA critical vulnerability exists in the Picture-in-Picture feature of Google Chrome on Android, allowing remote attackers to exploit insufficient validation of untrusted input. This could enable a sandbox escape through a specially crafted HTML page, potentially compromising the device's security. Organizations using affected versions of Chrome on Android should prioritize patching to mitigate the risk of exploitation.
Original NVD Description
Insufficient validation of untrusted input in Picture-in-Picture in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Low)
Related CVEs
Other vulnerabilities affecting the same vendor(s)