CyberRota Analysis
AI-GeneratedA vulnerability in the CSS implementation of Google Chrome prior to version 151.0.7922.72 allows remote attackers to inject arbitrary scripts or HTML through specially crafted HTML pages, leading to potential user experience security issues (UXSS). This could compromise user data or facilitate further attacks. Organizations using affected versions of Chrome should prioritize updates to mitigate this risk.
CVE
CVE-2026-17878
Severity
MEDIUM
CVSS
6.1
EPSS
0.18%
Chrome
Original NVD Description
Inappropriate implementation in CSS in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to inject arbitrary scripts or HTML (UXSS) via a crafted HTML page. (Chromium security severity: Medium)
Related CVEs
Other vulnerabilities affecting the same vendor(s)