Upstream information

CVE-2026-103626 at MITRE

Description

Incorrect authorization in FileSystem in Google Chrome on on Windows prior to 154.0.8037.97 allowed a remote attacker leveraging social engineering to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)

SUSE information

Overall state of this security issue: Does not affect SUSE products

This issue is currently rated as having critical severity.

SUSE Bugzilla entry: 1284015 [NEW]

No SUSE Security Announcements cross referenced.


SUSE Timeline for this CVE

CVE page created: Fri Oct 2 22:02:09 2026
CVE page last modified: Sat Oct 3 12:55:32 2026