CVE
CVE-2026-78905
chromium-browser: angle: ANGLE: Arbitrary code execution via type confusion in crafted HTML (critical)
DOCUMENTATION: A flaw was found in ANGLE, a component used in Google Chrome. This type confusion vulnerability allows a remote attacker to potentially execute arbitrary code outside of the browser's security sandbox. Exploitation can occur by enticing a user to visit a specially crafted HTML page, leading to a compromise of the affected system.
Package Versions Affected
Package Version
patch Availability
No items found.
Automatically patch vulnerabilities without upgrading
Fix Without Upgrading
Detect compatible fix
Apply safe remediation
Fix with a single pull request
CVSS Version
Severity
Base Score
CVSS Version
Score Vector

C
H
U
8.8
-
3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

C
H
U
-

C
H
U
-
Related Resources
No items found.
References
https://access.redhat.com/security/cve/CVE-2026-78905