CVE-2026-14382
Critical · CVSS 9.6Google Chrome ANGLE — Insufficient input validation sandbox escape
- CVSS
- 9.6
- nvd
- EPSS
- —
- KEV
- No
- Class
- other
- CWE-20
Description
Insufficient validation of untrusted input in ANGLE in Google Chrome prior to 150.0.7871.46 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
Search profile — drives PoC discovery
Symbols ANGLEsandbox escapecrafted HTML pageuntrusted input validationissues.chromium.org/issues/492218546
Keywords CVE-2026-14382Chrome ANGLE sandbox escapeANGLE input validationChromium 150.0.7871.46Chrome sandbox escape PoCANGLE WebGL sandboxChromium issue 492218546
Versions: prior to 150.0.7871.46
Ranked PoCs (1) — best first
Heuristic ranking — not yet expert-vetted. Scored on structure + provenance, not execution.
- ★ 7
Recall-favoring discovery; ranking by the Stage-4 scorer (Adam's rubric). Scanner/aggregator repos are hidden.
References
Status: enriched · ingested 2026-07-03T00:00:43.000Z · profiled 2026-07-03T00:30:43.000Z