Vulnerabilidad · Publicado 05/06/2026 · Actualizado 01/08/2026
Inappropriate implementation in Extensions in Google Chrome prior to 149.0.7827.53 allowed an attacker in a privileged network position to execute arbitrary code inside a sandbox via a crafted Chrome Extension. (Chromium security severity: Low)
Inappropriate implementation in Extensions in Google Chrome prior to 149.0.7827.53 allowed an attacker in a privileged network position to execute arbitrary code inside a sandbox via a crafted Chrome Extension. (Chromium security severity: Low)
Score: 7.1/10 — Severidad: HIGH — Estado NIST: Analyzed
CVSS:3.1/AV:A/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H
Chrome, Macos, Linux kernel, Windows — Google, Apple, Linux
CWE-829
Publicado en NIST NVD.