CVE-2026-102322(google / chrome)

LOWCVSS 9.6 · CRITICAL

Signal is active with 3 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

Incorrect Authorization in SiteIsolation in Google Chrome prior to 155.0.8059.39 allowed a remote attacker to execute arbitrary code via a crafted HTML page. (Chromium security severity: High)

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-863

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • chrome

Threat summary

  • 6 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Peaked 1d ago at 3 mentions (2026-10-07); latest day: 3
  • 6 total mentions across 2 days

Affected systems

Vendors
Products
chrome

Deep dive

Activity timeline6 mentions / 2d
01223Mentions · 2026-10-07: 3Mentions · 2026-10-08: 310-0710-08
Referenced assets2 URLs
Full discourse6 posts
  • やぐちはるお@LangCore VPoE@haruo2177

    Chromeでやばめの脆弱性(CVE-2026-102322)。 悪意あるWebページを開くだけで任意コード実行につながる可能性があるHigh級の欠陥。古いChromeやPlaywright環境は早急に更新推奨です。 https://github.com/advisories/GHSA-8pm8-72rp-hgvp

    3592241.6K1.0K259.7K
    1.7K followersView on X
  • 溜雑@Ryuzot1112

    CVE-2026-102322,普通にクソ危なくて草(更新済みです) PCつけっぱなし良くないね,マジで https://t.co/FToaJgnf1O

    00030350
    1.0K followersView on X
  • ころちゃん@corocn

    CVE-2026-102322

    00011686
    4.8K followersView on X
  • 二ノ瀬@isNinose

    @cyber_forecast これも危ないです CVE-2026-102322 Chromeの脆弱性で悪意あるサイト開いただけでダメ。 https://github.com/advisories/GHSA-8pm8-72rp-hgvp

    000004
    2.1K followersView on X
  • まつさか :checked:@ma2saka

    CVE-2026-102322 Chromeあげときゃ安心と思ったらElectron系とかPlaywriteとかもか。。。。。

    0000048
    688 followersView on X
  • The Hacker Wire@TheHackerWire

    🚨 CVE-2026-102322 (CVSS 8.8 High) An incorrect authorization flaw in Google Chrome's SiteIsolation architecture enables remote attackers to execute arbitrary code via a crafted HTML page. https://www.thehackerwire.com/vulnerability/CVE-2026-102322/ https://t.co/u9Z6cQnzls

    00000184
    176 followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appgooglechrome---

Explore more