Policy Bypass Vulnerability in Google Chrome Audio Component
CVE-2026-5896

Currently unrated

Key Information:

Vendor

Google

Status
Vendor
CVE Published:
8 April 2026

What is CVE-2026-5896?

A vulnerability exists in the audio component of Google Chrome that allows a remote attacker to bypass sandbox download restrictions. By convincing a user to perform specific UI gestures on a specially crafted HTML page, the attacker can execute unauthorized actions, leading to potential security breaches.

Affected Version(s)

Chrome 147.0.7727.55

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.