Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Stebalien

#44719of 53,630
5.8Total CVSS
Vulnerabilities · 1
PT-2026-7151
5.8
2026-02-09
Google · Captive Browser · CVE-2026-25740
**Name of the Vulnerable Software and Affected Versions** captive browser versions prior to 25.11 **Description** The captive browser, a dedicated Chrome instance used for logging into captive portals, contains a flaw. In versions 25.05 and earlier, enabling the `programs.captive-browser` feature allows any user on the system to execute arbitrary commands with the CAP NET RAW capability. This capability permits binding to privileged ports and spoofing localhost traffic from privileged services. **Recommendations** Update to version 25.11 or later.