| Source | ID | Title |
|---|---|---|
Debian DSA |
DSA-6513-1 | chromium security update |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Wed, 30 Sep 2026 13:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
ssvc
|
Wed, 30 Sep 2026 00:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Chrome DevTools Authorization Bypass via Crafted Extension | chromium-browser: chromium-browser: Web origin policy bypass via crafted extension in DevTools |
| Weaknesses | CWE-346 | |
| References |
| |
| Metrics |
threat_severity
|
cvssV3_1
|
Tue, 29 Sep 2026 23:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Chrome DevTools Authorization Bypass via Crafted Extension |
Tue, 29 Sep 2026 20:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Google
Google chrome |
|
| Vendors & Products |
Google
Google chrome |
Tue, 29 Sep 2026 17:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Incorrect authorization in DevTools in Google Chrome prior to 154.0.8037.57 allowed a remote attacker leveraging social engineering to bypass web origin policy via a crafted Chrome extension. (Chromium security severity: Low) | |
| Weaknesses | CWE-863 | |
| References |
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Chrome
Published:
Updated: 2026-09-30T12:39:12.544Z
Reserved: 2026-09-22T05:10:28.522Z
Link: CVE-2026-95352
Updated: 2026-09-30T12:39:08.736Z
Status : Undergoing Analysis
Published: 2026-09-29T18:17:28.197
Modified: 2026-09-30T13:17:28.413
Link: CVE-2026-95352
OpenCVE Enrichment
Updated: 2026-09-30T09:00:07Z
Debian DSA