Authorization Bypass in Google Chrome DevTools
CVE-2026-95352

Currently unrated

Key Information:

Vendor

Google

Status
Vendor
CVE Published:
29 September 2026

What is CVE-2026-95352?

An authorization bypass vulnerability exists in the DevTools component of Google Chrome that allows remote attackers to exploit crafted Chrome extensions. This issue arises due to incorrect authorization checks, letting attackers bypass web origin policies by leveraging social engineering methods. Users of affected versions of Google Chrome should be aware of potential risks associated with this vulnerability and ensure they update to the latest version for enhanced security.

Affected Version(s)

Chrome 154.0.8037.57

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.