Description
Missing authorization in Navigation in Google Chrome prior to 154.0.8037.57 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted HTML page. (Chromium security severity: Medium)
Published: 2026-09-29
Score: 5.4 Medium
EPSS: < 1% Very Low
KEV: No
Impact: Privilege Escalation via Site Isolation Bypass
Action: Update Chrome
AI Analysis

Impact

Missing authorization for navigation in Chrome allows a remote attacker who has already compromised the renderer process to bypass site isolation using a crafted HTML page. The flaw permits the renderer to elevate privileges within the browser, enabling access to data or resources that belong to other sites. Chromium rates this issue as medium severity, indicating that while it does not directly allow arbitrary code execution, it can undermine the browser's security boundary.

Affected Systems

Google Chrome versions earlier than 154.0.8037.57 are affected. The vulnerability is tied to the renderer process and any Chrome implementation that ships with the same navigation code prior to the 154.0.8037.57 release.

Risk and Exploitability

Because the exploit requires a compromise of the renderer process, the overall risk is moderate. An attacker would first need to deliver malware or otherwise gain code execution in the renderer before triggering the site‑isolation bypass. No data is available for EPSS, and the flaw is not listed in CISA's KEV catalog, suggesting that large‑scale exploitation has not been observed yet. The medium severity rating indicates that the vulnerability can undermine browser isolation but does not grant arbitrary code execution.

Generated by OpenCVE AI on September 29, 2026 at 23:20 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Upgrade to Google Chrome 154.0.8037.57 or later
  • Enable the Chrome "Force Site Isolation" flag to add an extra boundary until the patch is installed
  • Read the Chrome security releases blog for additional updates and best practices

Generated by OpenCVE AI on September 29, 2026 at 23:20 UTC.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
Debian DSA Debian DSA DSA-6513-1 chromium security update
History

Wed, 30 Sep 2026 16:45:00 +0000

Type Values Removed Values Added
CPEs cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*

Wed, 30 Sep 2026 13:30:00 +0000

Type Values Removed Values Added
Metrics cvssV3_1

{'score': 5.4, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Tue, 29 Sep 2026 23:45:00 +0000

Type Values Removed Values Added
Title Bypass Site Isolation via Crafted HTML Page in Chrome

Tue, 29 Sep 2026 19:45:00 +0000

Type Values Removed Values Added
First Time appeared Google
Google chrome
Vendors & Products Google
Google chrome

Tue, 29 Sep 2026 17:45:00 +0000

Type Values Removed Values Added
Description Missing authorization in Navigation in Google Chrome prior to 154.0.8037.57 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted HTML page. (Chromium security severity: Medium)
Weaknesses CWE-862
References

cve-icon MITRE

Status: PUBLISHED

Assigner: Chrome

Published:

Updated: 2026-09-30T12:40:30.069Z

Reserved: 2026-09-22T05:07:23.476Z

Link: CVE-2026-95287

cve-icon Vulnrichment

Updated: 2026-09-30T12:40:26.377Z

cve-icon NVD

Status : Analyzed

Published: 2026-09-29T18:17:20.393

Modified: 2026-09-30T16:30:35.520

Link: CVE-2026-95287

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-29T23:30:19Z

Weaknesses