CVE-2026-5919 | Google Chrome up to 146.0.7680.178 WebSockets cross-domain policy (ID 483423)
A vulnerability labeled as critical has been found in Google Chrome. The affected element is an unknown function of the component WebSockets. Such manipulation leads to permissive cross-domain policy with untrusted domains.
This vulnerability is referenced as CVE-2026-5919. It is possible to launch the attack remotely. No exploit is available.
The affected component should be upgraded.