SEPTEMBER 1, 2026
Live Feed
Back to database
Case File

CVE-2026-79289

LOW · CVSS 3.1 EPSS 0.20%

Source: NVD + CISA KEV + EPSS · Published 2026-08-25 · Last synced 2026-09-01

CyberRota Analysis

AI-Generated

Google Chrome versions prior to 152.0.7977.65 are vulnerable due to improper resource control in Workers, enabling remote attackers to bypass site isolation through a specially crafted HTML page. This flaw poses a risk primarily to users who may encounter malicious web content, making it essential for organizations and individuals using affected Chrome versions to prioritize updates to mitigate potential exploitation.

CVE
CVE-2026-79289
Severity
LOW
CVSS
3.1
EPSS
0.20%
Chrome

Original NVD Description

Improper control of a resource through its lifetime in Workers in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted HTML page. (Chromium security severity: Low)

Related CVEs

Other vulnerabilities affecting the same vendor(s)