
CVE-2026-7977 Inappropriate implementation in Canvas in Google Chrome prior to 148.0.7778.96 allowed a remote attacker to bypass same origin policy via a crafted HTML page. (Chromium… https://www.cve.org/CVERecord?id=CVE-2026-7977
Post summary
The text announces CVE‑2026‑7977, a canvas flaw in Chrome enabling same‑origin policy bypass through crafted HTML, without indicating any PoC, exploit code, or patch details.
