PT-2026-24881 · Google+1 · Chromedriver+2
Povcfe
·
Published
2026-01-26
·
Updated
2026-05-15
·
CVE-2026-3934
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Google Chrome versions prior to 146.0.7680.71
Description
Insufficient policy enforcement in ChromeDriver in Google Chrome allowed a remote attacker to bypass the same origin policy through a crafted HTML page. The Chromium security severity is rated as Medium.
Recommendations
Update Google Chrome to version 146.0.7680.71 or later.
Fix
Improper Access Control
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Chromedriver
Google Chrome
Red Os