SEPTEMBER 5, 2026
Live Feed
Back to database
Case File

CVE-2026-84357

MEDIUM · CVSS 6.5 EPSS 0.18%

Source: NVD + CISA KEV + EPSS · Published 2026-09-02 · Last synced 2026-09-05

CyberRota Analysis

AI-Generated

Improper input validation in the Omnibox of Google Chrome versions prior to 152.0.7977.75 enables remote attackers to exploit crafted network traffic, potentially bypassing web origin policies through social engineering tactics. This vulnerability poses a significant risk to users who may inadvertently interact with malicious content. Organizations and individuals using affected versions of Chrome should prioritize updates to mitigate potential exploitation.

CVE
CVE-2026-84357
Severity
MEDIUM
CVSS
6.5
EPSS
0.18%
Chrome

Original NVD Description

Improper input validation in Omnibox in Google Chrome prior to 152.0.7977.75 allowed a remote attacker leveraging social engineering to bypass web origin policy via crafted network traffic. (Chromium security severity: High)

Related CVEs

Other vulnerabilities affecting the same vendor(s)