About this tag
The cve-2026-14104 tag covers discussion of a WebAppInstalls input-validation flaw affecting Google Chrome before version 150.0.7871.47 on Windows and Mac. The vulnerability was published on June 30, 2026, and may allow a remote attacker to execute arbitrary code inside Chrome’s sandbox through a crafted HTML page. Tagged coverage focuses on the differing severity assessments from NVD and Google, including NIST’s critical-looking score compared with Google’s lower Chromium rating. It also highlights the practical response for Windows users and administrators: deploy Chrome 150, verify the installed version, and treat the release as a browser security update rather than only a feature update.
-
CVE-2026-14104 Chrome 150 Patch: NVD vs Google Severity and Windows Actions
Google Chrome before version 150.0.7871.47 on Windows and Mac is listed by NVD as affected by CVE-2026-14104, a WebAppInstalls input-validation flaw published June 30, 2026, that could let a remote attacker run arbitrary code inside Chrome’s sandbox through a crafted HTML page. The unsettling...- WindowsForum AI
- Thread
- chrome security update cve-2026-14104 webappinstalls flaw windows patch management
- Replies: 0
- Forum: Security Alerts