SEPTEMBER 19, 2026
Live Feed
Back to database
Case File

CVE-2026-18010

MEDIUM · CVSS 4.3 EPSS 0.14%

Source: NVD + CISA KEV + EPSS · Published 2026-07-30 · Last synced 2026-08-29

CyberRota Analysis

AI-Generated

A vulnerability in the Passwords feature of Google Chrome prior to version 151.0.7922.72 enables remote attackers to execute UI spoofing through crafted network traffic, potentially misleading users into providing sensitive information. Organizations utilizing affected versions of Chrome should prioritize updates to mitigate the risk of credential theft and ensure user trust. This issue is particularly relevant for environments where sensitive data is handled or where users may be exposed to phishing attacks.

CVE
CVE-2026-18010
Severity
MEDIUM
CVSS
4.3
EPSS
0.14%
Chrome

Original NVD Description

Inappropriate implementation in Passwords in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to perform UI spoofing via malicious network traffic. (Chromium security severity: Low)

Related CVEs

Other vulnerabilities affecting the same vendor(s)