Cross-site request forgery in Google Chromium - CVE-2026-95362
Published: September 23, 2026
Vulnerability details
The vulnerability allows a remote attacker to perform unauthorized actions.
The vulnerability exists due to cross-site request forgery in DevTools when handling requests initiated by crafted web content. A remote attacker can trick a victim into visiting crafted web content to perform unauthorized actions.
User interaction is required.