PT-2026-31534 · Google · Google Chrome
Richard Belisle
·
Published
2026-02-10
·
Updated
2026-04-14
·
CVE-2026-5919
CVSS v2.0
7.8
High
| Vector | AV:N/AC:L/Au:N/C:N/I:C/A:N |
Name of the Vulnerable Software and Affected Versions
Google Chrome versions prior to 147.0.7727.55
Description
A flaw exists in Google Chrome's handling of WebSockets due to insufficient validation of untrusted input. A remote attacker who has compromised the renderer process can bypass the same origin policy using a specially crafted HTML page. The security severity is rated as Low.
Recommendations
Update Google Chrome to version 147.0.7727.55 or later.
Fix
RCE
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Google Chrome