Executive brief
Google Chrome processes SVG (Scalable Vector Graphics) images in web pages. A vulnerability in how Chrome handles SVG rendering allows an attacker to craft a malicious HTML page that can read data from different websites a user visits, bypassing Chrome's security protections that normally prevent this cross-origin access. This could expose sensitive information from other websites.
Technical details
This vulnerability involves an observable discrepancy in SVG rendering within Google Chrome's rendering engine, allowing information disclosure through cross-origin data access. The vulnerability exists due to improper handling of SVG rendering behavior that differs in a way that leaks information about cross-origin resources. An attacker must craft a malicious HTML page and convince a user to visit it (requires user interaction). The attack is network-based and requires no authentication. When exploited, the attacker can obtain data from cross-origin sources that the user has access to, violating the same-origin policy. The vulnerability is fixed in Chrome version 152.0.7977.65 and later.
Affected products
- Google Chrome before 152.0.7977.65
Timeline
- 2026-08-25: disclosed: Fixed in Chrome 152 stable release
- 2026-08-25: other: Published to NVD