Insufficient validation of untrusted input in Cast in Google Chrome prior to 148.0.7778.96 allowed an attacker on the local network segment to bypass same origin policy via malicious network traffic. (Chromium security severity: Low)
Loading...
Loading...
Score 4.3 from GitHub Security Advisory published 2026-05-06. NVD baseline CVSS 4.3; sources differ by 0.0.
Insufficient validation of untrusted input in Cast in Google Chrome prior to 148.0.7778.96 allowed an attacker on the local network segment to bypass same origin policy via malicious network traffic. (Chromium security severity: Low)
May 6, 2026
May 7, 2026
These vendors published their own advisory mentioning this CVE — often with vendor-specific remediation steps + affected product lists not in NVD.
See which npm, PyPI, Go, and Maven packages are affected by CVE-2026-8005
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.