Authorization Bypass in Google Chrome for Mac
CVE-2026-95296

Currently unrated

Key Information:

Vendor

Google

Status
Vendor
CVE Published:
29 September 2026

What is CVE-2026-95296?

A vulnerability in Google Chrome for Mac allows attackers to exploit missing authorization in the Core component. By utilizing social engineering techniques, a remote attacker can create a specially crafted HTML page that enables the unauthorized retrieval of cross-origin data. Users who interact with such pages may inadvertently compromise their data security.

Affected Version(s)

Chrome 154.0.8037.57

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.