PT-2026-24881 · Google+1 · Chromedriver+2

Povcfe

·

Publicado

2026-01-26

·

Atualizado

2026-05-15

·

CVE-2026-3934

CVSS v2.0

7.5

Alta

VetorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Google Chrome versions prior to 146.0.7680.71
Description Insufficient policy enforcement in ChromeDriver in Google Chrome allowed a remote attacker to bypass the same origin policy through a crafted HTML page. The Chromium security severity is rated as Medium.
Recommendations Update Google Chrome to version 146.0.7680.71 or later.

Correção

Improper Access Control

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2026-04781
CVE-2026-3934
OPENSUSE-SU-2026:10376-1
OPENSUSE-SU-2026:20372-1

Produtos afetados

Chromedriver
Google Chrome
Red Os