CVE-2026-79126
Last modified
CVE-2026-79126 is a medium-severity vulnerability rated 5.9/10 on the CVSS scale. Incorrect provision of specified functionality in Proxy in Google Chrome on on Windows prior to 152.0.7977.65 allowed an adjacent attacker to potentially obtain sensitive information via crafted network traffic. (Chromium security severity: Low). EPSS estimates a 0.13% chance of exploitation in the next 30 days.
Description
Incorrect provision of specified functionality in Proxy in Google Chrome on on Windows prior to 152.0.7977.65 allowed an adjacent attacker to potentially obtain sensitive information via crafted network traffic. (Chromium security severity: Low)
Metrics
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Chrome | < 152.0.7977.65 |
References
- https://chromereleases.googleblog.com/2026/08/stable-channel-update-for-desktop_0256176589.htmlRelease Notes, Vendor Advisory
- https://issues.chromium.org/issues/533408915Permissions Required
Timeline
- Published
- Last Modified
- Status
- Analyzed
Frequently Asked Questions
What is CVE-2026-79126?
How severe is CVE-2026-79126?
How do I fix CVE-2026-79126?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-79120Uninitialized resource in ANGLE in Google Chrome prior to 15…6.5
- CVE-2026-79121Improper input validation in Chromecast in Google Chrome pri…8.3
- CVE-2026-79122Information leak in SignIn in Google Chrome prior to 152.0.7…5.9
- CVE-2026-79123Improper input validation in NTP Footer in Google Chrome on …6.5
- CVE-2026-79124Information leak in Intents in Google Chrome on on Android p…6.5
- CVE-2026-79125Information leak in XR in Google Chrome prior to 152.0.7977.…6.5
- CVE-2026-79127Out of bounds write in ANGLE in Google Chrome prior to 152.0…8.8
- CVE-2026-79128Use after free in Views in Google Chrome on on Mac prior to …9.6
- CVE-2026-79129Use after free in Sessions in Google Chrome on on Android pr…9.6
- CVE-2026-7913Insufficient policy enforcement in DevTools in Google Chrome…7.8
- CVE-2026-79130Buffer overflow in ANGLE in Google Chrome prior to 152.0.797…9.6
- CVE-2026-79131Out of bounds write in ANGLE in Google Chrome prior to 152.0…9.6
Are you affected by CVE-2026-79126?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
