CVE-2026-11276

Inappropriate implementation in Cast in Google Chrome prior to 149.0.7827.53 allowed an attacker on the local network segment to bypass discretionary access control via malicious network traffic. (Chromium security severity: Low)
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*
OR cpe:2.3:o:apple:macos:-:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

History

05 Jun 2026, 20:39

Type Values Removed Values Added
CPE cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:-:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*
References () https://chromereleases.googleblog.com/2026/06/stable-channel-update-for-desktop.html - () https://chromereleases.googleblog.com/2026/06/stable-channel-update-for-desktop.html - Vendor Advisory
References () https://issues.chromium.org/issues/501780338 - () https://issues.chromium.org/issues/501780338 - Permissions Required
First Time Apple macos
Google
Linux
Apple
Linux linux Kernel
Google chrome
Microsoft windows
Microsoft

05 Jun 2026, 02:17

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.1
CWE CWE-269

05 Jun 2026, 00:17

Type Values Removed Values Added
New CVE

Information

Published : 2026-06-05 00:17

Updated : 2026-06-05 20:39


NVD link : CVE-2026-11276

Mitre link : CVE-2026-11276

CVE.ORG link : CVE-2026-11276


JSON object : View

Products Affected

google

  • chrome

microsoft

  • windows

apple

  • macos

linux

  • linux_kernel
CWE
CWE-269

Improper Privilege Management