SEPTEMBER 19, 2026
Live Feed
Back to database
Case File

CVE-2026-17903

MEDIUM · CVSS 5.4 EPSS 0.12%

Source: NVD + CISA KEV + EPSS · Published 2026-07-30 · Last synced 2026-08-29

CyberRota Analysis

AI-Generated

A vulnerability in Chromecast within Google Chrome prior to version 151.0.7922.72 allows attackers on the same local network to inject malicious scripts or HTML into privileged pages due to insufficient policy enforcement. This could lead to unauthorized access or manipulation of sensitive data. Users and organizations utilizing affected versions of Chrome should prioritize updates to mitigate potential exploitation risks.

CVE
CVE-2026-17903
Severity
MEDIUM
CVSS
5.4
EPSS
0.12%
Chrome

Original NVD Description

Insufficient policy enforcement in Chromecast in Google Chrome prior to 151.0.7922.72 allowed an attacker on the local network segment to inject scripts or HTML into a privileged page via malicious network traffic. (Chromium security severity: Low)

Related CVEs

Other vulnerabilities affecting the same vendor(s)