๐Ÿ” CVE Alert

CVE-2026-79222

MEDIUM 4.3
CVSS Score
4.3
EPSS Score
0.1%
EPSS Percentile
3th

Incorrect authorization in CustomTabs in Google Chrome on on Android prior to 152.0.7977.65 allowed a local attacker to bypass web origin policy via a co-installed app. (Chromium security severity: Medium)

CWE CWE-863
Vendor google
Product chrome
Ecosystems
Industries
Technology
Published Aug 25, 2026
Last Updated Aug 27, 2026
Stay Ahead of the Next One

Get instant alerts for google chrome

Be the first to know when new medium vulnerabilities affecting google chrome are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Google / Chrome
152.0.7977.65 < 152.0.7977.65

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
chromereleases.googleblog.com: https://chromereleases.googleblog.com/2026/08/stable-channel-update-for-desktop_0256176589.html issues.chromium.org: https://issues.chromium.org/issues/496195129