OCTOBER 8, 2026
Live Feed
Back to database
Case File

CVE-2026-95376

HIGH · CVSS 8 EPSS 0.20%

Source: NVD + CISA KEV + EPSS · Published 2026-09-29 · Last synced 2026-10-08

CyberRota Analysis

AI-Generated

Google Chrome versions prior to 154.0.8037.57 are vulnerable due to an externally controlled reference in DevTools, which can be exploited by adjacent attackers using social engineering techniques to bypass system access restrictions through specially crafted network traffic. This vulnerability poses a medium security risk, and organizations using affected versions of Chrome should prioritize updates to mitigate potential exploitation.

CVE
CVE-2026-95376
Severity
HIGH
CVSS
8
EPSS
0.20%
Chrome

Original NVD Description

Externally controlled reference in DevTools in Google Chrome prior to 154.0.8037.57 allowed an adjacent attacker leveraging social engineering to bypass system access restrictions via crafted network traffic. (Chromium security severity: Medium)

Related CVEs

Other vulnerabilities affecting the same vendor(s)