CVE-2026-10996 | Google Chrome up to 148.0.7778.216 Workers cross-domain policy (ID 400517 / WID-SEC-2026-1794)
A vulnerability was found in Google Chrome and classified as problematic. Affected by this vulnerability is an unknown functionality of the component Workers. The manipulation results in permissive cross-domain policy with untrusted domains.
This vulnerability is known as CVE-2026-10996. It is possible to launch the attack remotely. No exploit is available.
It is suggested to upgrade the affected component.