CVE-2026-14382: exploitation status and patch state CVE-2026-14382 · CVSS 9.6 CRITICAL · EPSS <1% · patch available
Insufficient validation of untrusted input in ANGLE in Google Chrome prior to 150.0.7871.46 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
Is CVE-2026-14382 exploited? Not in the CISA KEV catalog. EPSS puts exploitation in the next 30 days at <1%. Public exploit code: none found in monitored sources. Which products and versions are affected? No affected package list recorded here yet.
Is there a patch? What PlainSec published about CVE-2026-14382 Primary sources What this record does not say No affected package data. KEV and EPSS are re-checked daily. Record last updated 2026-08-14.
CVE-2026-14382: exploitation status and patch state CVE-2026-14382 · CVSS 9.6 CRITICAL · EPSS <1% · patch available
Insufficient validation of untrusted input in ANGLE in Google Chrome prior to 150.0.7871.46 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
Is CVE-2026-14382 exploited? Not in the CISA KEV catalog. EPSS puts exploitation in the next 30 days at <1%. Public exploit code: none found in monitored sources. Which products and versions are affected? No affected package list recorded here yet.
Is there a patch? What PlainSec published about CVE-2026-14382 Primary sources What this record does not say No affected package data. KEV and EPSS are re-checked daily. Record last updated 2026-08-14.