Vulnerability Details CVE-2026-78964
Use after free in Sync in Google Chrome on on iOS prior to 152.0.7977.65 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Low)
Exploit prediction scoring system (EPSS) score
EPSS Score 0.005
EPSS Ranking 41.8%
CVSS Severity
CVSS v3 Score 9.6
Products affected by CVE-2026-78964
-
cpe:2.3:o:apple:iphone_os:-