CVE-2026-7973
High
Published: 06 May 2026
Published
06 May 2026
Modified
06 May 2026
KEV Added
—
Patch
—
CVSS Score
8.8
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS Score
0.0006
19.4th percentile
Risk Priority
18
60% EPSS · 20% KEV · 20% CVSS
Summary
CVE-2026-7973 is a high-severity External Control of Assumed-Immutable Web Parameter (CWE-472) vulnerability in Google Chrome. Its CVSS base score is 8.8 (High).
Operationally, ranked at the 19.4th percentile by exploit likelihood (below the median); it is not currently listed in the CISA KEV catalog.
NVD Description
Integer overflow in Dawn in Google Chrome on Windows prior to 148.0.7778.96 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)
Deeper analysisAI
Automated synthesis unavailable for this CVE.
Details
- CWE(s)
Affected Products
google
chrome
≤ 148.0.7778.96
CVEs Like This One
CVE-2026-4452Same product: Google Chrome
CVE-2026-6311Same product: Google Chrome
CVE-2026-7911Same product: Google Chrome
CVE-2025-1915Same product: Google Chrome
CVE-2026-7925Same product: Google Chrome
CVE-2026-7914Same product: Google Chrome
CVE-2026-7994Same product: Google Chrome
CVE-2026-7917Same product: Google Chrome
CVE-2025-2783Same product: Google Chrome
CVE-2026-7990Same product: Google Chrome