
CVE-2026-5276 Insufficient policy enforcement in WebUSB in Google Chrome prior to 146.0.7680.178 allowed a remote attacker to obtain potentially sensitive information from process me… https://www.cve.org/CVERecord?id=CVE-2026-5276
Post summary
CVE-2026-5276 reveals that early Chrome versions under 146.0.7680.178 lack proper policy enforcement for WebUSB, enabling attackers to potentially access sensitive data, with no evidence of PoC, exploit tools, active exploitation, or mitigations included.

