CVE-2026-87651

Status: Received

Description

Incorrect authorization in Paint in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to obtain cross-origin data via a crafted HTML page. (Chromium security severity: High)

Published
September 9, 2026 1:17 AM
Last Modified
September 9, 2026 1:17 AM
Source
[email protected]

Weaknesses (CWE)

CWE-863

References

Contact Us

Get the CyboWatch SIEM platform, hosting, and 24×7 SOC analysts. Call or email us to get started.