Description
Insufficient validation of untrusted input in UI in Google Chrome on Mac prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Critical)
Published: 2026-05-28
Score: 8.3 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

The vulnerability is an insufficient validation of untrusted input in Chrome's user interface for macOS, allowing a remote attacker who has already compromised the renderer process to escape Chrome’s sandbox. This flaw is a classic input validation weakness identified as CWE‑20 and CWE‑1286. If exploited, the attacker can escape the sandbox, potentially running arbitrary code with the privileges of the browser process and compromising the host system.

Affected Systems

Google Chrome on macOS versions older than 148.0.7778.216 are affected. Users of these versions should upgrade immediately to mitigate the risk.

Risk and Exploitability

Chromium classifies this as a critical flaw with a CVSS score of 8.3. EPSS score is < 1% and the vulnerability is not listed in CISA’s KEV catalog, indicating that no publicly known exploits exist yet. However, exploitation requires the attacker to control the renderer process and serve a specially crafted HTML page. Once those conditions are met, a sandbox escape could lead to remote code execution, making the risk extremely high if the conditions are satisfied.

Generated by OpenCVE AI on May 29, 2026 at 18:04 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Upgrade Google Chrome to version 148.0.7778.216 or later on macOS.
  • If an update cannot be applied immediately, restrict rendering of untrusted content by disabling JavaScript or applying a content‑security policy that blocks malicious scripts in web pages.
  • As a temporary measure, run Chromium in a separate user account or virtual machine that isolates the browser process from the rest of the system until the patch is applied.

Generated by OpenCVE AI on May 29, 2026 at 18:04 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Fri, 29 May 2026 16:30:00 +0000

Type Values Removed Values Added
Metrics cvssV3_1

{'score': 9.0, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:H'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}

cvssV3_1

{'score': 8.3, 'vector': 'CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H'}


Fri, 29 May 2026 12:15:00 +0000

Type Values Removed Values Added
Title Insufficient Input Validation in Chrome's UI Leads to Remote Sandbox Escape chromium-browser: Insufficient validation of untrusted input in UI
Weaknesses CWE-1286
References
Metrics threat_severity

None

cvssV3_1

{'score': 9.0, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:H'}

threat_severity

Critical


Fri, 29 May 2026 00:15:00 +0000

Type Values Removed Values Added
Title Insufficient Input Validation in Chrome's UI Leads to Remote Sandbox Escape

Fri, 29 May 2026 00:00:00 +0000

Type Values Removed Values Added
First Time appeared Google
Google chrome
Vendors & Products Google
Google chrome

Thu, 28 May 2026 22:45:00 +0000

Type Values Removed Values Added
Description Insufficient validation of untrusted input in UI in Google Chrome on Mac prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Critical)
Weaknesses CWE-20
References

cve-icon MITRE

Status: PUBLISHED

Assigner: Chrome

Published:

Updated: 2026-05-29T15:53:52.949Z

Reserved: 2026-05-28T17:24:43.467Z

Link: CVE-2026-9885

cve-icon Vulnrichment

Updated: 2026-05-29T15:53:48.763Z

cve-icon NVD

Status : Undergoing Analysis

Published: 2026-05-28T23:16:46.490

Modified: 2026-05-29T16:16:34.640

Link: CVE-2026-9885

cve-icon Redhat

Severity : Critical

Publid Date: 2026-05-27T00:00:00Z

Links: CVE-2026-9885 - Bugzilla

cve-icon OpenCVE Enrichment

Updated: 2026-05-29T18:15:04Z

Weaknesses