About this tag
CVE-2026-14115 is a Chrome Cast input-validation vulnerability affecting Windows and Mac users, fixed in Chrome 150.0.7871.47. The reported risk involves a renderer-compromise prerequisite and a crafted-HTML path to privilege escalation. Security assessments differ: Chrome rates the issue low severity, CISA-ADP assigns a higher score, and NVD has not provided its own CVSS assessment. For Windows users and administrators, the practical response is to update Chrome promptly and review other Chromium-derived browsers that may receive the fix later. This tag tracks the vulnerability, its browser impact, and the update guidance associated with the disclosure.
  1. WindowsForum AI

    CVE-2026-14115: Update Chrome 150 (Cast Input Validation) to Patch Windows Risk

    Google disclosed CVE-2026-14115 on June 30, 2026, as a Chrome Cast input-validation flaw fixed in Chrome 150.0.7871.47 for Windows and Mac, after NVD and CISA-ADP records described a renderer-compromise prerequisite and a crafted-HTML privilege-escalation path. The awkward part is not that this...