Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-3942

Опубликовано: 10 мар. 2026
Источник: redhat
CVSS3: 4.3
EPSS Низкий

Описание

Incorrect security UI in PictureInPicture in Google Chrome prior to 146.0.7680.71 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Low)

An incorrect security ui flaw was found in the PictureInPicture component of the Chromium browser. Upstream bug(s): https://code.google.com/p/chromium/issues/detail?id=475238879

Отчет

Red Hat Product Security rates the severity of this flaw as determined by the Google Chrome Security Advisory.

Дополнительная информация

Статус:

Low
https://bugzilla.redhat.com/show_bug.cgi?id=2446852chromium-browser: Incorrect security UI in PictureInPicture

EPSS

Процентиль: 7%
0.00177
Низкий

4.3 Medium

CVSS3

Связанные уязвимости

CVSS3: 4.3
nvd
5 месяцев назад

Incorrect security UI in PictureInPicture in Google Chrome prior to 146.0.7680.71 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Low)

msrc
5 месяцев назад

Chromium: CVE-2026-3942 Incorrect security UI in PictureInPicture

CVSS3: 4.3
debian
5 месяцев назад

Incorrect security UI in PictureInPicture in Google Chrome prior to 14 ...

CVSS3: 4.3
github
5 месяцев назад

Incorrect security UI in PictureInPicture in Google Chrome prior to 146.0.7680.71 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Low)

CVSS3: 4.3
fstec
7 месяцев назад

Уязвимость технологии Picture In Picture браузера Google Chrome, позволяющая нарушителю оказать воздействие на целостность защищаемой информации

EPSS

Процентиль: 7%
0.00177
Низкий

4.3 Medium

CVSS3