PT-2026-41085 · Google · Google Chrome+1
Published
2026-05-12
·
Updated
2026-05-16
·
CVE-2026-8556
CVSS v3.1
3.1
Low
| Vector | AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Google Chrome versions prior to 148.0.7778.168
Description
An inappropriate implementation in ANGLE (Almost Native Graphics Layer Engine, an abstraction layer that translates WebGL calls to native graphics APIs) allows a remote attacker who has compromised the renderer process to leak cross-origin data using a crafted HTML page.
Recommendations
Update to version 148.0.7778.168 or later.
Fix
Buffer Overflow
Improper Access Control
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Angle
Google Chrome