PT-2026-46693 · Google · Google Chrome

Published

2026-06-04

·

Updated

2026-06-04

·

CVE-2026-11166

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Inappropriate implementation in SVG in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to inject arbitrary scripts or HTML (UXSS) via a crafted HTML page. (Chromium security severity: Medium)

Related Identifiers

CVE-2026-11166

Affected Products

Google Chrome