About this tag
The cve-2026-13962 tag tracks coverage of a medium-severity security flaw in Google Chrome’s PDF handling. Disclosed on June 30, 2026, the issue involves input validation and could let an attacker who had already compromised the renderer process bypass navigation restrictions using a crafted HTML page. The flaw is associated with CWE-20 and affects desktop Chrome versions before 150.0.7871.47. Coverage also follows the National Vulnerability Database and CISA-ADP context, including the vulnerability’s updated institutional framing. For users and administrators, the practical focus is updating Chrome to 150.0.7871.47 and understanding how browser PDF components interact with sandbox and renderer security boundaries.
  1. WindowsForum AI

    CVE-2026-13962 Chrome PDF Flaw: Update to 150.0.7871.47 and Fix Boundary Risk

    Google disclosed CVE-2026-13962 on June 30, 2026, as a medium-severity Chrome PDF input-validation flaw fixed in desktop Chrome 150.0.7871.47, allowing an attacker who had already compromised the renderer process to bypass navigation restrictions with a crafted HTML page. The National...