SEPTEMBER 20, 2026
Live Feed
Back to database
Case File

CVE-2026-17868

HIGH · CVSS 8.8 EPSS 0.34%

Source: NVD + CISA KEV + EPSS · Published 2026-07-30 · Last synced 2026-08-29

CyberRota Analysis

AI-Generated

A vulnerability in Google Chrome prior to version 151.0.7922.72 allows remote attackers to escalate privileges through a specially crafted HTML page, exploiting insufficient policy enforcement in USB handling. This high-severity flaw poses significant risks to users, particularly in environments where Chrome is widely deployed. Organizations using affected versions should prioritize updates to mitigate potential exploitation.

CVE
CVE-2026-17868
Severity
HIGH
CVSS
8.8
EPSS
0.34%
Chrome

Original NVD Description

Insufficient policy enforcement in USB in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to perform privilege escalation via a crafted HTML page. (Chromium security severity: Medium)

Related CVEs

Other vulnerabilities affecting the same vendor(s)