5.1
/ 10
MEDIUM
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N
Description
Inappropriate implementation in Cast in Google Chrome prior to 149.0.7827.53 allowed an attacker on the local network segment to bypass discretionary access control via malicious network traffic. (Chromium security severity: Low)
Basic Information
ID
CVE-2026-11276
Source
Chrome
Published
Jun 4, 2026 at 23:06
Modified
Jun 5, 2026 at 01:40
Affected Product
Vendor
Google
Product
Chrome
Version
149.0.7827.53
Affected Versions
Google Chrome 149.0.7827.53