VYPR
High severity7.8NVD Advisory· Published Jun 30, 2026· Updated Jul 2, 2026

CVE-2026-13778

CVE-2026-13778

Description

Use after free in WebUSB in Google Chrome on Mac prior to 150.0.7871.47 allowed a local attacker to execute arbitrary code via a malicious peripheral. (Chromium security severity: Critical)

Affected products

6

Patches

Vulnerability mechanics

References

2

News mentions

1