Inappropriate implementation in WebGL in Google Chrome prior to 150.0.7871.115 allowed a remote attacker to inject arbitrary scripts or HTML (UXSS) via a crafted HTML page. (Chromium security severity: High)
Metrics
Affected Vendors & Products
References
History
Thu, 16 Jul 2026 21:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | WebGL Script Injection Leading to UXSS in Chrome |
Wed, 15 Jul 2026 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Inappropriate WebGL Implementation Enables Remote Script Injection in Chrome |
Tue, 14 Jul 2026 05:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Inappropriate WebGL Implementation Enables Remote Script Injection in Chrome |
Sat, 11 Jul 2026 20:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | WebGL Injection Allowing Script Execution in Google Chrome Before 150.0.7871.115 |
Fri, 10 Jul 2026 20:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | WebGL Injection Allowing Script Execution in Google Chrome Before 150.0.7871.115 |
Thu, 09 Jul 2026 23:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | WebGL Arbitrary Script Injection in Google Chrome |
Thu, 09 Jul 2026 11:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Thu, 09 Jul 2026 04:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | WebGL Arbitrary Script Injection in Google Chrome | |
| Weaknesses | CWE-79 |
Thu, 09 Jul 2026 01:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Google
Google chrome |
|
| Vendors & Products |
Google
Google chrome |
Wed, 08 Jul 2026 23:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Inappropriate implementation in WebGL in Google Chrome prior to 150.0.7871.115 allowed a remote attacker to inject arbitrary scripts or HTML (UXSS) via a crafted HTML page. (Chromium security severity: High) | |
| References |
|
Status: PUBLISHED
Assigner: Chrome
Published: 2026-07-08T22:36:05.220Z
Updated: 2026-07-09T10:15:03.155Z
Reserved: 2026-07-08T17:07:43.731Z
Link: CVE-2026-15127
Updated: 2026-07-09T10:14:58.677Z
No data.
No data.