High · published August 26, 2026
Insufficient control flow management in DevTools in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to potentially execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: Medium)
| Product | Versions | Fixed in |
|---|---|---|
| google/chrome | < 152.0.7977.65 | 152.0.7977.65 |