Cross-Origin Data Exposure in Google Chrome Skia Component
CVE-2026-19160
3.1LOW
What is CVE-2026-19160?
An issue has been identified in the Skia component of Google Chrome, allowing a remote attacker who has compromised the renderer process to exploit an uninitialized use condition. This vulnerability can lead to an unauthorized disclosure of cross-origin data through a specially crafted HTML page. Users are advised to update their Google Chrome browsers to the latest version to mitigate potential risks associated with this security flaw.
Affected Version(s)
Chrome 151.0.7922.109