CVE-2026-11146
Description
An insufficient validation of untrusted input flaw was found in the Chromoting component of the Chromium browser.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=501709220
Statement
Red Hat Product Security rates the severity of this flaw as determined by the Google Chrome Security Advisory.
Understanding the Weakness (CWE)
Access Control,Integrity
Technical Impact: Bypass Protection Mechanism; Modify Application Data
An attacker could package untrusted data with trusted data to bypass protection mechanisms to gain access to and possibly modify sensitive data.
Frequently Asked Questions
Not sure what something means? Check out our Security Glossary.
Want to get errata notifications? Sign up here.