CVE details
CVE-2026-84325
Improper input validation in DataTransfer in Google Chrome prior to 152.
Description
Improper input validation in DataTransfer in Google Chrome prior to 152.0.7977.75 allowed a remote attacker leveraging social engineering to bypass system access restrictions via a co-installed app. (Chromium security severity: High)
Affected products
- Google Chrome · → 152.0.7977.75
- Chromium · → 152.0.7977.75
Overlaps: Google Chrome, Chromium