SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-78935

CRITICAL · CVSS 9.6 EPSS 0.51%

Source: NVD + CISA KEV + EPSS · Published 2026-08-25 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

A vulnerability in the Mobile version of Google Chrome on iOS prior to version 152.0.7977.65 allows remote attackers to exploit an uninitialized variable, potentially enabling arbitrary code execution outside the browser's sandbox. This poses a critical risk to users, particularly those accessing untrusted web content. Users and organizations utilizing affected versions of Chrome on iOS should prioritize updating to the latest version to mitigate this risk.

CVE
CVE-2026-78935
Severity
CRITICAL
CVSS
9.6
EPSS
0.51%
Chrome

Original NVD Description

Use of uninitialized variable in Mobile in Google Chrome on on iOS prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Critical)

Related CVEs

Other vulnerabilities affecting the same vendor(s)