Medium severity4.3NVD Advisory· Published Sep 28, 2026· Updated Sep 28, 2026
CVE-2026-13018
CVE-2026-13018
Description
Insufficient validation of untrusted input in Codecs in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to potentially perform out of bounds memory access via a crafted video file. (Chromium security severity: Low)
Affected products
1Patches
Vulnerability mechanics
References
2News mentions
0No linked articles in our index yet.