Uninitialized Use in WebXR in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page. (Chromium security severity: Low)
Metrics
Affected Vendors & Products
References
History
Fri, 31 Jul 2026 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Uninitialized Use in WebXR Leads to Information Disclosure in Chrome on Android |
Thu, 30 Jul 2026 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Thu, 30 Jul 2026 07:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Google
Google chrome |
|
| Vendors & Products |
Google
Google chrome |
Thu, 30 Jul 2026 01:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Uninitialized Use in WebXR in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page. (Chromium security severity: Low) | |
| Weaknesses | CWE-457 | |
| References |
|
Status: PUBLISHED
Assigner: Chrome
Published:
Updated: 2026-07-30T15:07:11.020Z
Reserved: 2026-07-27T23:37:10.143Z
Link: CVE-2026-17968
Updated: 2026-07-30T15:06:38.459Z
No data.
No data.
OpenCVE Enrichment
Updated: 2026-07-31T21:00:03Z