SEPTEMBER 19, 2026
Live Feed
Back to database
Case File

CVE-2026-17978

MEDIUM · CVSS 5.3 EPSS 0.21%

Source: NVD + CISA KEV + EPSS · Published 2026-07-30 · Last synced 2026-08-29

CyberRota Analysis

AI-Generated

A side-channel information leakage vulnerability in WebCodecs within Google Chrome prior to version 151.0.7922.72 allows remote attackers to extract potentially sensitive information from process memory through specially crafted HTML pages. This medium-severity flaw could be exploited to compromise user privacy and data security. Users and organizations utilizing affected versions of Chrome should prioritize updating to mitigate the risk of information exposure.

CVE
CVE-2026-17978
Severity
MEDIUM
CVSS
5.3
EPSS
0.21%
Chrome

Original NVD Description

Side-channel information leakage in WebCodecs in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page. (Chromium security severity: Low)

Related CVEs

Other vulnerabilities affecting the same vendor(s)