Description
Type Confusion in Accessibility in Google Chrome on Windows prior to 148.0.7778.96 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
Published: 2026-05-06
Score: 8.3 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

A type confusion flaw in the Accessibility component of Google Chrome on Windows permits a remote attacker who has already gained control of a renderer process to escape the browser’s sandbox. By serving a specially crafted HTML page, the attacker can trigger the vulnerability, potentially achieving execution of arbitrary code with system privileges. This weakness is classified as type confusion (CWE‑843).

Affected Systems

All users of Google Chrome on Windows operating systems using the desktop stable channel and not yet updated to version 148.0.7778.96 or newer are vulnerable. The issue applies to any installation that has not received the latest Chrome release.

Risk and Exploitability

The flaw carries a CVSS score of 8.3, indicating high severity according to Chromium’s internal scoring. No EPSS value is available and the vulnerability is not listed in the CISA KEV catalog, indicating no known widespread exploitation. Successful exploitation requires that the attacker first compromise the renderer process; the most likely attack path is via a malicious web page delivered through phishing or a drive‑by‑attack, which is inferred from the requirement to serve a crafted HTML page. Once the renderer is compromised, the type‑confusion can be leveraged to escape the sandbox and execute code with elevated privileges on the host system.

Generated by OpenCVE AI on May 7, 2026 at 00:18 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Upgrade Google Chrome to the latest stable release on all affected Windows machines
  • Ensure automatic updates are enabled so future patches are applied promptly
  • If upgrading immediately is not possible, limit browser usage to trusted sites and monitor for anomalous renderer activity
  • Disable or restrict the Accessibility features in Chrome settings as a temporary mitigation until the patch is deployed

Generated by OpenCVE AI on May 7, 2026 at 00:18 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Thu, 07 May 2026 00:45:00 +0000

Type Values Removed Values Added
Title Type Confusion Vulnerability in Chrome Accessibility Allows Sandbox Escape

Wed, 06 May 2026 23:45:00 +0000

Type Values Removed Values Added
First Time appeared Microsoft
Microsoft windows
CPEs cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
Vendors & Products Microsoft
Microsoft windows

Wed, 06 May 2026 23:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Wed, 06 May 2026 22:30:00 +0000

Type Values Removed Values Added
Metrics cvssV3_1

{'score': 8.3, 'vector': 'CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H'}


Wed, 06 May 2026 22:15:00 +0000

Type Values Removed Values Added
Title Type Confusion Vulnerability in Chrome Accessibility Allows Sandbox Escape

Wed, 06 May 2026 22:00:00 +0000

Type Values Removed Values Added
First Time appeared Google
Google chrome
Vendors & Products Google
Google chrome

Wed, 06 May 2026 18:30:00 +0000

Type Values Removed Values Added
Description Type Confusion in Accessibility in Google Chrome on Windows prior to 148.0.7778.96 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
Weaknesses CWE-843
References

cve-icon MITRE

Status: PUBLISHED

Assigner: Chrome

Published:

Updated: 2026-05-07T03:56:43.419Z

Reserved: 2026-05-05T22:59:07.984Z

Link: CVE-2026-7914

cve-icon Vulnrichment

Updated: 2026-05-06T20:39:43.213Z

cve-icon NVD

Status : Analyzed

Published: 2026-05-06T19:16:39.680

Modified: 2026-05-06T23:40:21.350

Link: CVE-2026-7914

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-05-07T00:30:12Z

Weaknesses