SEPTEMBER 19, 2026
Live Feed
Back to database
Case File

CVE-2026-17932

MEDIUM · CVSS 5.5 EPSS 0.11%

Source: NVD + CISA KEV + EPSS · Published 2026-07-30 · Last synced 2026-08-29

CyberRota Analysis

AI-Generated

A use-after-free vulnerability in the DataTransfer component of Google Chrome on Windows prior to version 151.0.7922.72 allows local attackers to exploit crafted HTML pages to access potentially sensitive information from process memory. This vulnerability poses a medium risk, primarily affecting users of Chrome on Windows systems. Organizations and individuals using these versions of Chrome should prioritize updating to mitigate the risk of unauthorized information disclosure.

CVE
CVE-2026-17932
Severity
MEDIUM
CVSS
5.5
EPSS
0.11%
Windows Chrome

Original NVD Description

Use after free in DataTransfer in Google Chrome on Windows prior to 151.0.7922.72 allowed a local attacker to obtain potentially sensitive information from process memory via a crafted HTML page. (Chromium security severity: Low)

Related CVEs

Other vulnerabilities affecting the same vendor(s)