Description
Integer overflow in Dawn in Google Chrome on Windows prior to 148.0.7778.96 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)
Published: 2026-05-06
Score: 8.8 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

An integer overflow in the Dawn rendering engine of Google Chrome on Windows – identified as CWE-472 – allows a remote attacker to craft an HTML page that may trigger a sandbox escape. The vulnerability, classified as Medium severity by Chromium, could let a malicious webpage bypass Chromium’s sandbox isolation and gain elevated privileges on the host system. The impact is primarily the potential elevation of privileges for an attacker executing code from a vulnerable Chrome instance.

Affected Systems

The flaw exists in Google Chrome on the Windows platform for all releases prior to version 148.0.7778.96. Any user running one of those versions remains at risk unless updated to a patched release.

Risk and Exploitability

The attack vector appears to be remote via a specially crafted HTML page that a user could load. Because the EPSS score is not available and the vulnerability is not listed in the CISA KEV catalog, the current exploitation likelihood is uncertain, but the potential for sandbox escape represents a high impact if exploited. The CVSS score of 8.8 denotes a high severity rating, indicating significant risk to confidentiality and integrity on systems where the affected Chrome version runs unrestricted web content.

Generated by OpenCVE AI on May 7, 2026 at 00:07 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Upgrade Google Chrome to version 148.0.7778.96 or newer, which contains the fix for the integer overflow in Dawn.
  • Enable Chrome’s site isolation and sandboxing features to enforce stricter process separation for web pages.
  • Implement or enforce a strict Content Security Policy in web applications to reduce the risk of malicious HTML executing within Chrome.

Generated by OpenCVE AI on May 7, 2026 at 00:07 UTC.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
Debian DSA Debian DSA DSA-6250-1 chromium security update
History

Thu, 07 May 2026 00:30:00 +0000

Type Values Removed Values Added
Title Integer Overflow in Chrome Dawn Leading to Potential Sandbox Escape

Wed, 06 May 2026 23:30:00 +0000

Type Values Removed Values Added
First Time appeared Microsoft
Microsoft windows
CPEs cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
Vendors & Products Microsoft
Microsoft windows

Wed, 06 May 2026 22:15:00 +0000

Type Values Removed Values Added
Metrics cvssV3_1

{'score': 8.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Wed, 06 May 2026 21:30:00 +0000

Type Values Removed Values Added
First Time appeared Google
Google chrome
Vendors & Products Google
Google chrome

Wed, 06 May 2026 21:15:00 +0000

Type Values Removed Values Added
Title Integer Overflow in Chrome Dawn Leading to Potential Sandbox Escape

Wed, 06 May 2026 18:30:00 +0000

Type Values Removed Values Added
Description Integer overflow in Dawn in Google Chrome on Windows prior to 148.0.7778.96 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)
Weaknesses CWE-472
References

cve-icon MITRE

Status: PUBLISHED

Assigner: Chrome

Published:

Updated: 2026-05-07T03:56:13.865Z

Reserved: 2026-05-05T22:59:24.405Z

Link: CVE-2026-7973

cve-icon Vulnrichment

Updated: 2026-05-06T19:21:42.857Z

cve-icon NVD

Status : Analyzed

Published: 2026-05-06T19:16:48.173

Modified: 2026-05-06T23:29:40.630

Link: CVE-2026-7973

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-05-07T00:15:05Z

Weaknesses