PT-2026-38211 · Google · Google Chrome

Published

2026-05-05

·

Updated

2026-05-14

·

CVE-2026-8018

CVSS v3.1

8.1

High

VectorAV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Google Chrome versions prior to 148.0.7778.96
Description Insufficient policy enforcement in DevTools allows a remote attacker to potentially perform a sandbox escape via malicious network traffic. A sandbox escape is a process where a program breaks out of its restricted environment to gain unauthorized access to the underlying system.
Recommendations Update to version 148.0.7778.96 or later.

Fix

Protection Mechanism Failure

Weakness Enumeration

Related Identifiers

CVE-2026-8018
ECHO-9583-410E-12A5
OPENSUSE-SU-2026:10778-1

Affected Products

Google Chrome