THREATOPS
THREAT OPSThreat News › [NVD] CVE-2026-17672 (CRITICAL 9.6) — Insufficient validation of untrusted input in Chromecast in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)

[NVD] CVE-2026-17672 (CRITICAL 9.6) — Insufficient validation of untrusted input in Chromecast in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)

mednvdPublished 2026-07-30

CVE-2026-17672 CVSS: 9.6 CRITICAL Published: 2026-07-30T01:16:29.330

Insufficient validation of untrusted input in Chromecast in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-17672