Vulnerability Details CVE-2026-10981
Insufficient validation of untrusted input in Codecs in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to leak cross-origin data via a crafted video file. (Chromium security severity: High)
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 14.8%