SEPTEMBER 18, 2026
Live Feed
Back to database
Case File

CVE-2026-78914

MEDIUM · CVSS 6.5 EPSS 0.27%

Source: NVD + CISA KEV + EPSS · Published 2026-08-25 · Last synced 2026-09-18

CyberRota Analysis

AI-Generated

An uninitialized resource in Skia within Google Chrome versions prior to 152.0.7977.65 allows remote attackers to potentially read sensitive memory data through specially crafted HTML pages. While the vulnerability is classified with low severity, it poses a risk to users who may inadvertently expose their data. Organizations using affected versions of Chrome should prioritize updates to mitigate potential exploitation.

CVE
CVE-2026-78914
Severity
MEDIUM
CVSS
6.5
EPSS
0.27%
Chrome

Original NVD Description

Uninitialized resource in Skia in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially read memory inside the sandbox via a crafted HTML page. (Chromium security severity: Low)

Related CVEs

Other vulnerabilities affecting the same vendor(s)