Insufficient validation of untrusted input in Cast in Google Chrome prior to 148.0.7778.96 allowed an attacker on the local network segment to bypass same origin policy via malicious network traffic. (Chromium security severity: Low)
References
| Link | Resource |
|---|---|
| https://chromereleases.googleblog.com/2026/05/stable-channel-update-for-desktop.html | Vendor Advisory Release Notes |
| https://issues.chromium.org/issues/496298665 | Permissions Required |
Configurations
Configuration 1 (hide)
| AND |
|
History
07 May 2026, 13:54
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://chromereleases.googleblog.com/2026/05/stable-channel-update-for-desktop.html - Vendor Advisory, Release Notes | |
| References | () https://issues.chromium.org/issues/496298665 - Permissions Required | |
| First Time |
Apple macos
Microsoft windows Linux Google chrome Microsoft Linux linux Kernel Apple |
|
| CPE | cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:* cpe:2.3:o:apple:macos:-:*:*:*:*:*:*:* cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:* |
|
| CWE | NVD-CWE-noinfo |
06 May 2026, 22:16
| Type | Values Removed | Values Added |
|---|---|---|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 4.3 |
06 May 2026, 19:19
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-05-06 19:16
Updated : 2026-05-07 13:54
NVD link : CVE-2026-8005
Mitre link : CVE-2026-8005
CVE.ORG link : CVE-2026-8005
JSON object : View
Products Affected
- chrome
microsoft
- windows
apple
- macos
linux
- linux_kernel
CWE
