SEPTEMBER 14, 2026
Live Feed
Back to database
Case File

CVE-2026-78936

LOW · CVSS 2.9 EPSS 0.11%

Source: NVD + CISA KEV + EPSS · Published 2026-08-25 · Last synced 2026-09-14

CyberRota Analysis

AI-Generated

A vulnerability in the CustomTabs feature of Google Chrome on Android prior to version 152.0.7977.65 allows local attackers to access cross-origin data through co-installed applications. This could lead to unauthorized data exposure, potentially compromising user privacy and security. Android users and developers of co-installed apps should prioritize updating to the latest version to mitigate this risk.

CVE
CVE-2026-78936
Severity
LOW
CVSS
2.9
EPSS
0.11%
Android Chrome

Original NVD Description

Observable discrepancy in CustomTabs in Google Chrome on on Android prior to 152.0.7977.65 allowed a local attacker to obtain cross-origin data via a co-installed app. (Chromium security severity: Medium)

Related CVEs

Other vulnerabilities affecting the same vendor(s)