AUGUST 27, 2026
Live Feed
Back to database
Case File

CVE-2026-79041

MEDIUM · CVSS 4.3 EPSS 0.26%

Source: NVD + CISA KEV + EPSS · Published 2026-08-25 · Last synced 2026-08-27

CyberRota Analysis

AI-Generated

Google Chrome on Mac versions prior to 152.0.7977.65 is vulnerable due to a missing authorization flaw that allows remote attackers to exploit social engineering techniques to bypass web origin policies and access privileged pages through specially crafted HTML. While the severity is classified as low, organizations using affected versions should prioritize updates to mitigate potential risks associated with unauthorized access. Users and administrators of Chrome on Mac should ensure they are running the latest version to protect against this vulnerability.

CVE
CVE-2026-79041
Severity
MEDIUM
CVSS
4.3
EPSS
0.26%
Chrome

Original NVD Description

Missing authorization in Browser in Google Chrome on on Mac prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to bypass web origin policy into a privileged page via a crafted HTML page. (Chromium security severity: Low)

Related CVEs

Other vulnerabilities affecting the same vendor(s)