PT-2026-46722 · Google · Google Chrome
CVE-2026-11195
·
Published
2026-04-17
·
Updated
2026-08-31
CVSS v2.0
7.8
High
| Vector | AV:N/AC:L/Au:N/C:C/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Google Chrome versions prior to 149.0.7827.53
Description
An inappropriate implementation in MHTML (MIME HTML, a web page archive format) allows a remote attacker to leak cross-origin data. This occurs when a user is convinced to perform specific UI gestures while interacting with a crafted HTML page.
Recommendations
Update to version 149.0.7827.53 or later.
Fix
DoS
Origin Validation Error
CSRF
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Google Chrome