Description
Insufficient validation of untrusted input in ANGLE in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)
Published: 2026-06-04
Score: 9.6 Critical
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

A remote attacker can craft a malicious HTML page that exploits insufficient validation of untrusted input in Chrome's ANGLE component to attempt a sandbox escape. This vulnerability falls under input validation weaknesses (CWE‑20, CWE‑807) and, if successfully exploited, could allow code to run outside the browser sandbox, compromising system integrity. The Chromium project has rated it as Medium severity, indicating a significant but not catastrophic risk if mitigated.

Affected Systems

The flaw affects Google Chrome browsers that shipped before the 149.0.7827.53 update; no specific minor versions are listed. Any Chrome installation lacking the patch could be vulnerable.

Risk and Exploitability

The EPSS score is < 1% and the vulnerability is not listed in CISA KEV. Based on the description, the likely attack vector requires the attacker to host a crafted HTML page that a victim visits, potentially triggering the sandbox escape. The high CVSS score of 9.6 indicates a severe risk, and although there is no evidence of widespread exploitation, the potential to escape the browser sandbox and compromise system integrity makes this a top priority for remediation.

Generated by OpenCVE AI on June 7, 2026 at 14:18 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Upgrade Google Chrome to version 149.0.7827.53 or later.
  • If an update is not immediately possible, consider disabling ANGLE or switching to a different browser to reduce exposure.
  • Ensure that operating‑system level sandboxing controls are enabled and up to date to add an additional barrier against escape attempts.

Generated by OpenCVE AI on June 7, 2026 at 14:18 UTC.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
Debian DSA Debian DSA DSA-6325-1 chromium security update
History

Sun, 07 Jun 2026 12:15:00 +0000

Type Values Removed Values Added
Title chromium-browser: Insufficient validation of untrusted input in ANGLE
Weaknesses CWE-807
References
Metrics threat_severity

None

threat_severity

Moderate


Fri, 05 Jun 2026 21:15:00 +0000

Type Values Removed Values Added
Title Chrome ANGLE Sandbox Escape Vulnerability

Fri, 05 Jun 2026 20:30:00 +0000

Type Values Removed Values Added
CPEs cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*

Fri, 05 Jun 2026 19:30:00 +0000

Type Values Removed Values Added
Metrics cvssV3_1

{'score': 9.6, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Fri, 05 Jun 2026 04:45:00 +0000

Type Values Removed Values Added
Title Chrome ANGLE Sandbox Escape Vulnerability

Fri, 05 Jun 2026 03:45:00 +0000

Type Values Removed Values Added
First Time appeared Google
Google chrome
Vendors & Products Google
Google chrome

Thu, 04 Jun 2026 23:15:00 +0000

Type Values Removed Values Added
Description Insufficient validation of untrusted input in ANGLE in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)
Weaknesses CWE-20
References

cve-icon MITRE

Status: PUBLISHED

Assigner: Chrome

Published:

Updated: 2026-06-05T18:20:56.422Z

Reserved: 2026-06-04T17:06:42.074Z

Link: CVE-2026-11066

cve-icon Vulnrichment

Updated: 2026-06-05T18:20:50.892Z

cve-icon NVD

Status : Analyzed

Published: 2026-06-04T23:17:11.133

Modified: 2026-06-05T20:27:44.920

Link: CVE-2026-11066

cve-icon Redhat

Severity : Moderate

Publid Date: 2026-06-02T00:00:00Z

Links: CVE-2026-11066 - Bugzilla

cve-icon OpenCVE Enrichment

Updated: 2026-06-07T14:30:16Z

Weaknesses
  • CWE-20

    Improper Input Validation

  • CWE-807

    Reliance on Untrusted Inputs in a Security Decision