Cross-Origin Data Leak in Google Chrome Pre-155.0.8059.39
CVE-2026-106325

Currently unrated

Key Information:

Vendor

Google

Status
Vendor
CVE Published:
6 October 2026

What is CVE-2026-106325?

A flaw in Google Chrome's core component prior to version 155.0.8059.39 allows a remote attacker to exploit cross-origin data. By leveraging social engineering techniques, attackers can utilize specially crafted HTML pages to leak sensitive information from one domain to another. This vulnerability highlights the importance of stringent validation protocols within web browsers to mitigate potential data breaches.

Affected Version(s)

Chrome 155.0.8059.39

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.