SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-84833

MEDIUM · CVSS 4.3 EPSS 0.30% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-09-02 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

A vulnerability exists in the Browser Agent Message Construction component of Integrals Openbrowser, allowing for remote exploitation that leads to excessive resource consumption. Organizations utilizing this software should prioritize remediation efforts, especially given the public disclosure of the exploit and the lack of vendor response regarding updates or patches. The medium severity rating indicates a notable risk that could impact system performance and availability.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Detected Signals
exploit
GitHub PoC Links

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-84833
Severity
MEDIUM
CVSS
4.3
EPSS
0.30%

Original NVD Description

A vulnerability was found in ntegrals openbrowser up to 067fc45d649baa961750da8e2f4a75d87c5c75c8. Affected by this vulnerability is an unknown functionality of the file packages/core/src/agent/agent.ts of the component Browser Agent Message Construction. Performing a manipulation results in resource consumption. It is possible to initiate the attack remotely. The exploit has been made public and could be used. This product is using a rolling release to provide continious delivery. Therefore, no version details for affected nor updated releases are available. The vendor was contacted early about this disclosure but did not respond in any way.