Description
Insufficient validation of untrusted input in Media in Google Chrome on Windows prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)
Published: 2026-06-30
Score: 9.6 Critical
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

An input validation flaw (CWE-20) in Google Chrome’s media handling allows a sandbox escape if the renderer process is already compromised. When exploited, the attacker can execute code with the privileges of the current user, effectively elevating local privileges and potentially compromising confidentiality, integrity, and availability of the machine.

Affected Systems

All installations of Google Chrome on Windows older than version 150.0.7871.47 are impacted. The vulnerability resides in the Media code path, so any renderer process that processes media content is susceptible.

Risk and Exploitability

The flaw is rated high severity, with a CVSS score of 9.6, indicating a critical risk. The EPSS score indicates a very low probability of exploitation and the vulnerability is not listed in CISA’s KEV catalog. The attack requires the attacker to first gain control of a renderer process, after which the media input validation failure can be leveraged to escape the sandbox. The likely attack vector is a malicious web page that first exploits a renderer‑process compromise and then abuses the media flaw to escape the sandbox.

Generated by OpenCVE AI on July 17, 2026 at 14:27 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Update Chrome to at least version 150.0.7871.47 to apply the media input validation fix.
  • Ensure that Chrome’s default sandbox is enabled and that no bypasses (e.g. disabling sandbox policy flags) are in place.
  • Restrict or disable media playback for untrusted sites through enterprise policy or Chrome extensions as a temporary mitigation.

Generated by OpenCVE AI on July 17, 2026 at 14:27 UTC.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
Debian DLA Debian DLA DLA-4672-1 chromium security update
Debian DSA Debian DSA DSA-6378-1 chromium security update
History

Wed, 15 Jul 2026 11:15:00 +0000

Type Values Removed Values Added
Title Google Chrome Media Input Validation Vulnerability Enables Sandbox Escape on Windows

Mon, 13 Jul 2026 16:30:00 +0000

Type Values Removed Values Added
Title Google Chrome Media Input Validation Vulnerability Enables Sandbox Escape on Windows

Sat, 11 Jul 2026 02:45:00 +0000

Type Values Removed Values Added
Title Chrome Media Input Validation Flaw Allows Sandbox Escape

Thu, 09 Jul 2026 21:45:00 +0000

Type Values Removed Values Added
Title Chrome Media Input Validation Flaw Allows Sandbox Escape

Thu, 09 Jul 2026 08:15:00 +0000

Type Values Removed Values Added
Title Chrome Media Input Validation Flaw Allows Sandbox Escape

Wed, 08 Jul 2026 20:00:00 +0000

Type Values Removed Values Added
Title Chrome Media Input Validation Flaw Allows Sandbox Escape

Tue, 07 Jul 2026 22:00:00 +0000

Type Values Removed Values Added
Title Chrome Media Input Validation Flaw Enables Sandbox Escape

Tue, 07 Jul 2026 04:45:00 +0000

Type Values Removed Values Added
Title Chrome Media Input Validation Flaw Enables Sandbox Escape

Mon, 06 Jul 2026 16:45:00 +0000

Type Values Removed Values Added
Title Chrome Windows Media Input Validation Flaw Enables Sandbox Escape

Mon, 06 Jul 2026 07:45:00 +0000

Type Values Removed Values Added
Title Chrome Windows Media Input Validation Flaw Enables Sandbox Escape

Sun, 05 Jul 2026 23:15:00 +0000

Type Values Removed Values Added
Title Chrome Media Input Validation Allows Sandbox Escape

Sun, 05 Jul 2026 11:45:00 +0000

Type Values Removed Values Added
Title Chrome Media Input Validation Allows Sandbox Escape

Sat, 04 Jul 2026 23:30:00 +0000

Type Values Removed Values Added
Title Insufficient Media Input Validation Allows Sandbox Escape in Chrome

Sat, 04 Jul 2026 12:00:00 +0000

Type Values Removed Values Added
Title Insufficient Media Input Validation Allows Sandbox Escape in Chrome

Fri, 03 Jul 2026 20:15:00 +0000

Type Values Removed Values Added
Title Media Input Validation Flaw Allows Sandbox Escape in Google Chrome on Windows

Fri, 03 Jul 2026 09:15:00 +0000

Type Values Removed Values Added
Title Media Input Validation Flaw Allows Sandbox Escape in Google Chrome on Windows

Thu, 02 Jul 2026 20:15:00 +0000

Type Values Removed Values Added
Title Insufficient Validation of Media Input Enabling Sandbox Escape in Google Chrome on Windows

Thu, 02 Jul 2026 15:00:00 +0000

Type Values Removed Values Added
Title Insufficient Validation of Media Input Enabling Sandbox Escape in Google Chrome on Windows

Thu, 02 Jul 2026 09:15:00 +0000

Type Values Removed Values Added
Title Media Input Validation Failure Allows Sandbox Escape in Google Chrome

Thu, 02 Jul 2026 02:30:00 +0000

Type Values Removed Values Added
Title Media Input Validation Failure Allows Sandbox Escape in Google Chrome

Wed, 01 Jul 2026 19:45:00 +0000

Type Values Removed Values Added
Title Chromium Media Input Validation Flaw Enabling Sandbox Escape

Wed, 01 Jul 2026 18:30:00 +0000

Type Values Removed Values Added
Metrics cvssV3_1

{'score': 9.6, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Wed, 01 Jul 2026 12:30:00 +0000

Type Values Removed Values Added
Title Chromium Media Input Validation Flaw Enabling Sandbox Escape

Wed, 01 Jul 2026 09:00:00 +0000

Type Values Removed Values Added
First Time appeared Google
Google chrome
Vendors & Products Google
Google chrome

Wed, 01 Jul 2026 08:15:00 +0000

Type Values Removed Values Added
Title Insufficient Validation Enables Potential Sandbox Escape via Media Handling in Chromium

Wed, 01 Jul 2026 01:45:00 +0000

Type Values Removed Values Added
Title Insufficient Validation Enables Potential Sandbox Escape via Media Handling in Chromium

Tue, 30 Jun 2026 23:15:00 +0000

Type Values Removed Values Added
Description Insufficient validation of untrusted input in Media in Google Chrome on Windows prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)
Weaknesses CWE-20
References

cve-icon MITRE

Status: PUBLISHED

Assigner: Chrome

Published:

Updated: 2026-07-01T19:02:10.085Z

Reserved: 2026-06-29T23:03:52.341Z

Link: CVE-2026-13920

cve-icon Vulnrichment

Updated: 2026-07-01T17:40:59.616Z

cve-icon NVD

No data.

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-07-17T14:30:17Z

Weaknesses
  • CWE-20

    Improper Input Validation