Vulnerability Details CVE-2026-103626
Incorrect authorization in FileSystem in Google Chrome on on Windows prior to 154.0.8037.97 allowed a remote attacker leveraging social engineering to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 9.8%
CVSS Severity
CVSS v3 Score 9.6