What is CVE-2026-17672?
CVE-2026-17672 is an insufficient validation of untrusted input vulnerability in the Chromecast feature of Google Chrome. It could allow a remote attacker who has compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. Users should update to Chrome version 151.0.7922.72 or later.
Azərbaycanca: CVE-2026-17672, Google Chrome-un Chromecast funksiyasında etibarsız giriş məlumatlarının kifayət qədər yoxlanılmaması zəifliyidir. Bu, renderer prosesini ələ keçirmiş uzaqdan hücumçuya xüsusi hazırlanmış HTML səhifə vasitəsilə sandbox mühitindən qaçmağa imkan verə bilər. 151.0.7922.72 versiyasından əvvəlki Chrome brauzerlərini yeniləmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-20; shared vendor: Google
FAQ2
What is the CVE-2026-17672 vulnerability?
CVE-2026-17672 is an insufficient validation of untrusted input vulnerability in the Chromecast feature of Google Chrome. It could allow a remote attacker who has compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page.
How to protect against CVE-2026-17672?
To protect against CVE-2026-17672, it is recommended to update Google Chrome to version 151.0.7922.72 or later.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.