Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-19169

Опубликовано: 06 авг. 2026
Источник: redhat
CVSS3: 8.3
EPSS Низкий

Описание

Insufficient validation of untrusted input in Contextual Tasks in Google Chrome prior to 151.0.7922.109 allowed a remote attacker to perform privilege escalation via a crafted HTML page. (Chromium security severity: High)

A flaw was found in Google Chrome. Insufficient validation of untrusted input in Contextual Tasks allows a remote attacker to perform privilege escalation. This can be achieved by enticing a user to visit a crafted HTML page, leading to an attacker gaining elevated permissions within the browser.

Отчет

This Important privilege escalation flaw in Chromium's Contextual Tasks allows a remote attacker to gain elevated permissions within the browser. The vulnerability is triggered by insufficient validation of untrusted input when a user visits a specially crafted HTML page, posing a significant risk to the confidentiality and integrity of user data for Red Hat users of the Chromium browser.

Дополнительная информация

Статус:

Important
Дефект:
CWE-79
https://bugzilla.redhat.com/show_bug.cgi?id=2512299chromium-browser: Google Chrome: Privilege escalation via crafted HTML page in Contextual Tasks

EPSS

Процентиль: 22%
0.00295
Низкий

8.3 High

CVSS3

Связанные уязвимости

CVSS3: 8.8
ubuntu
10 дней назад

Insufficient validation of untrusted input in Contextual Tasks in Google Chrome prior to 151.0.7922.109 allowed a remote attacker to perform privilege escalation via a crafted HTML page. (Chromium security severity: High)

CVSS3: 8.8
nvd
10 дней назад

Insufficient validation of untrusted input in Contextual Tasks in Google Chrome prior to 151.0.7922.109 allowed a remote attacker to perform privilege escalation via a crafted HTML page. (Chromium security severity: High)

msrc
5 дней назад

CVE-2026-19169 Insufficient validation of untrusted input in Contextual Tasks

CVSS3: 8.8
debian
10 дней назад

Insufficient validation of untrusted input in Contextual Tasks in Goog ...

CVSS3: 8.8
github
10 дней назад

Insufficient validation of untrusted input in Contextual Tasks in Google Chrome prior to 151.0.7922.109 allowed a remote attacker to perform privilege escalation via a crafted HTML page. (Chromium security severity: High)

EPSS

Процентиль: 22%
0.00295
Низкий

8.3 High

CVSS3