Description
Insufficient validation of untrusted input in Dawn in Google Chrome on Android prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)
Published: 2026-06-30
Score: 9.6 Critical
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

Chrome's Dawn rendering engine on Android performs insufficient validation of untrusted input in versions prior to 150.0.7871.47. If the renderer process is already compromised, the attacker can deliver a specially crafted HTML page that may trigger a sandbox escape, allowing code to execute with privileges higher than those normally granted to the renderer process. The vulnerability is defined by CWE-20, indicating an input validation failure. Although the description references a 'potential' escape rather than a guaranteed outcome, the existence of this flaw could lead to full system compromise if successfully exploited.

Affected Systems

Google Chrome for Android installations running any build before version 150.0.7871.47 are vulnerable. All affected devices should consider their Chrome version and apply the update as soon as it becomes available.

Risk and Exploitability

The flaw carries a CVSS score of 9.6, indicating very high severity. The EPSS score is reported as less than 1%, indicating a low but nonzero likelihood of exploitation. The vulnerability is not listed in the CISA KEV. If the attacker controls the renderer process and can supply malicious HTML to the target, the risk is severe, providing the attacker with elevated privileges and potentially full system compromise.

Generated by OpenCVE AI on July 21, 2026 at 16:39 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Update Chrome on Android to version 150.0.7871.47 or later
  • Enable automatic updates in Chrome so that future security patches are applied automatically
  • Use Chrome's Safe Browsing feature or a reputable anti-malware solution to block delivery of malicious web content, and enforce strict Content Security Policy (CSP) or input validation rules when rendering untrusted pages.

Generated by OpenCVE AI on July 21, 2026 at 16:39 UTC.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
Debian DLA Debian DLA DLA-4672-1 chromium security update
Debian DSA Debian DSA DSA-6378-1 chromium security update
History

Tue, 21 Jul 2026 17:00:00 +0000

Type Values Removed Values Added
Title Insufficient Input Validation in Chrome Dawn Render Engine Leading to Potential Sandbox Escape

Fri, 17 Jul 2026 14:45:00 +0000

Type Values Removed Values Added
Title Insufficient Validation in Chrome Dawn Allows Remote Renderer Process to Escape Sandbox

Thu, 16 Jul 2026 00:15:00 +0000

Type Values Removed Values Added
Title Insufficient Validation in Chrome Dawn Allows Remote Renderer Process to Escape Sandbox

Tue, 14 Jul 2026 12:00:00 +0000

Type Values Removed Values Added
Title Unsanitized Input in Chrome Android Dawn Engine Enables Potential Sandbox Escape

Mon, 13 Jul 2026 05:30:00 +0000

Type Values Removed Values Added
Title Unsanitized Input in Chrome Android Dawn Engine Enables Potential Sandbox Escape

Sun, 12 Jul 2026 11:00:00 +0000

Type Values Removed Values Added
Title Renderer Process Compromise Enables Sandbox Escape in Chrome Android

Fri, 10 Jul 2026 18:15:00 +0000

Type Values Removed Values Added
Title Renderer Process Compromise Enables Sandbox Escape in Chrome Android

Fri, 10 Jul 2026 04:15:00 +0000

Type Values Removed Values Added
Title Potential Sandbox Escape via Untrusted HTML Input in Google Chrome Android

Thu, 09 Jul 2026 08:15:00 +0000

Type Values Removed Values Added
Title Potential Sandbox Escape via Untrusted HTML Input in Google Chrome Android

Wed, 08 Jul 2026 03:45:00 +0000

Type Values Removed Values Added
Title Chrome Dawn Rendering Engine Input Validation Failure Allows Sandbox Escape

Tue, 07 Jul 2026 10:30:00 +0000

Type Values Removed Values Added
Title Chrome Dawn Rendering Engine Input Validation Failure Allows Sandbox Escape

Mon, 06 Jul 2026 12:30:00 +0000

Type Values Removed Values Added
Title Dawn Rendering Engine Sandbox Escape via Untrusted Input in Chrome for Android

Sun, 05 Jul 2026 23:15:00 +0000

Type Values Removed Values Added
Title Dawn Rendering Engine Sandbox Escape via Untrusted Input in Chrome for Android

Sun, 05 Jul 2026 15:15:00 +0000

Type Values Removed Values Added
Title Chrome Dawn Untrusted Input Validation Flaw Enables Sandbox Escape

Sun, 05 Jul 2026 07:15:00 +0000

Type Values Removed Values Added
Title Chrome Dawn Untrusted Input Validation Flaw Enables Sandbox Escape

Sat, 04 Jul 2026 23:30:00 +0000

Type Values Removed Values Added
Title Dawn Rendering Engine Sandbox Escape via Untrusted Input on Android Chrome

Sat, 04 Jul 2026 15:45:00 +0000

Type Values Removed Values Added
Title Dawn Rendering Engine Sandbox Escape via Untrusted Input on Android Chrome

Sat, 04 Jul 2026 04:15:00 +0000

Type Values Removed Values Added
Title Dawn Rendering Engine Input Validation Vulnerability Facilitates Sandbox Escape on Android

Fri, 03 Jul 2026 17:00:00 +0000

Type Values Removed Values Added
Title Dawn Rendering Engine Input Validation Vulnerability Facilitates Sandbox Escape on Android

Fri, 03 Jul 2026 09:15:00 +0000

Type Values Removed Values Added
Title Sandbox Escape via Unvalidated Input in Chrome Android Render Engine

Thu, 02 Jul 2026 17:30:00 +0000

Type Values Removed Values Added
Title Sandbox Escape via Unvalidated Input in Chrome Android Render Engine

Thu, 02 Jul 2026 09:15:00 +0000

Type Values Removed Values Added
Title Chrome Android Renderer Sandbox Escape via Unvalidated Input in Dawn Engine

Thu, 02 Jul 2026 00:30:00 +0000

Type Values Removed Values Added
Title Chrome Android Renderer Sandbox Escape via Unvalidated Input in Dawn Engine

Wed, 01 Jul 2026 19:45:00 +0000

Type Values Removed Values Added
Title Untrusted Input Allows Sandbox Escape in Chrome on Android

Wed, 01 Jul 2026 16:30:00 +0000

Type Values Removed Values Added
Title Untrusted Input Allows Sandbox Escape in Chrome on Android
Metrics cvssV3_1

{'score': 9.6, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Wed, 01 Jul 2026 12:30:00 +0000

Type Values Removed Values Added
Title Sandbox Escape Vulnerability in Chrome's Dawn Engine on Android

Wed, 01 Jul 2026 12:00:00 +0000

Type Values Removed Values Added
First Time appeared Google
Google chrome
Vendors & Products Google
Google chrome

Wed, 01 Jul 2026 03:15:00 +0000

Type Values Removed Values Added
Title Sandbox Escape Vulnerability in Chrome's Dawn Engine on Android

Tue, 30 Jun 2026 23:15:00 +0000

Type Values Removed Values Added
Description Insufficient validation of untrusted input in Dawn in Google Chrome on Android prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)
Weaknesses CWE-20
References

cve-icon MITRE

Status: PUBLISHED

Assigner: Chrome

Published:

Updated: 2026-07-01T18:59:13.987Z

Reserved: 2026-06-29T23:03:55.887Z

Link: CVE-2026-13934

cve-icon Vulnrichment

Updated: 2026-07-01T16:01:39.619Z

cve-icon NVD

No data.

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-07-21T16:45:02Z

Weaknesses
  • CWE-20

    Improper Input Validation