Description
Type Confusion in V8 in Google Chrome prior to 148.0.7778.216 allowed an attacker who convinced a user to install a malicious extension to execute arbitrary code inside a sandbox via a crafted Chrome Extension. (Chromium security severity: Medium)
Published: 2026-05-28
Score: 8.8 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

V8, the JavaScript engine used by Google Chrome, has a type confusion flaw in versions prior to 148.0.7778.216. This flaw permits an attacker who can persuade a user to install a malicious Chrome extension to execute arbitrary code, but only inside the extension’s sandboxed environment. The vulnerability is a classic example of CWE‑843, where a program assumes an object is of one type and processes it as such, leading to unintended behaviour.

Affected Systems

The flaw affects Google Chrome browsers running versions older than 148.0.7778.216. Any user of these versions who installs extensions from untrusted or unknown sources is at risk.

Risk and Exploitability

Although the flaw requires user interaction to install a malicious extension, the potential impact is high for an enabled extension can run code with the extension’s privileges. The EPSS score is not available, and the vulnerability is not listed in CISA KEV, suggesting that exploitation may occur sporadically but is not yet widely observed. In the absence of a publicly released exploit, the risk remains moderate but requires proactive mitigations. The CVSS score of 8.8 indicates a high severity vulnerability.

Generated by OpenCVE AI on May 29, 2026 at 13:05 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Upgrade to Chrome version 148.0.7778.216 or later.
  • Remove or uninstall any unknown or untrusted extensions that might have been installed.
  • Only install extensions from the Chrome Web Store and review requested permissions before installing.

Generated by OpenCVE AI on May 29, 2026 at 13:05 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Fri, 29 May 2026 17:15:00 +0000

Type Values Removed Values Added
First Time appeared Apple
Apple macos
Linux
Linux linux Kernel
Microsoft
Microsoft windows
CPEs cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:-:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
Vendors & Products Apple
Apple macos
Linux
Linux linux Kernel
Microsoft
Microsoft windows

Fri, 29 May 2026 12:15:00 +0000

Type Values Removed Values Added
Title Type Confusion in V8 Allows Code Execution via Malicious Chrome Extension chromium-browser: Type Confusion in V8
References
Metrics threat_severity

None

threat_severity

Moderate


Fri, 29 May 2026 11:30:00 +0000

Type Values Removed Values Added
Metrics cvssV3_1

{'score': 8.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Fri, 29 May 2026 00:15:00 +0000

Type Values Removed Values Added
Title Type Confusion in V8 Allows Code Execution via Malicious Chrome Extension

Thu, 28 May 2026 23:45:00 +0000

Type Values Removed Values Added
First Time appeared Google
Google chrome
Vendors & Products Google
Google chrome

Thu, 28 May 2026 22:45:00 +0000

Type Values Removed Values Added
Description Type Confusion in V8 in Google Chrome prior to 148.0.7778.216 allowed an attacker who convinced a user to install a malicious extension to execute arbitrary code inside a sandbox via a crafted Chrome Extension. (Chromium security severity: Medium)
Weaknesses CWE-843
References

cve-icon MITRE

Status: PUBLISHED

Assigner: Chrome

Published:

Updated: 2026-05-29T10:55:28.695Z

Reserved: 2026-05-28T17:25:16.461Z

Link: CVE-2026-10022

cve-icon Vulnrichment

Updated: 2026-05-29T10:13:14.920Z

cve-icon NVD

Status : Analyzed

Published: 2026-05-28T23:16:44.090

Modified: 2026-05-29T17:08:58.433

Link: CVE-2026-10022

cve-icon Redhat

Severity : Moderate

Publid Date: 2026-05-27T00:00:00Z

Links: CVE-2026-10022 - Bugzilla

cve-icon OpenCVE Enrichment

Updated: 2026-05-29T13:15:30Z

Weaknesses