CVE-2026-10888

Publish date: June 9, 2026
Severity
High
CVSS score
8.8
Package
chromium
Affected versions
>= 147.0.7727.101-1~deb13u1

Use-after-free in Cast Streaming in Google Chrome prior to 149.0.7827.53 allowed an attacker on the local network segment to execute arbitrary code via malicious network traffic. Chromium security severity: Critical.