CVE-2026-14119: exploitation status and patch state
CVE-2026-14119 · CVSS 6.5 MEDIUM · EPSS <1% · patch available
Type Confusion in Bluetooth in Google Chrome on Windows prior to 150.0.7871.47 allowed an attacker on the local network segment to obtain potentially sensitive information from process memory via a malicious peripheral. (Chromium security severity: Low)
Is CVE-2026-14119 exploited?
Not in the CISA KEV catalog.
EPSS puts exploitation in the next 30 days at <1%.
Public exploit code: none found in monitored sources.