CVE-2026-87521 | Google Chrome up to 152.0.7977.82 WebMCP cross-domain policy

SecurityVulns

A vulnerability classified as problematic was found in Google Chrome. This impacts an unknown function of the component WebMCP. Executing a manipulation can lead to permissive cross-domain policy with untrusted domains.

This vulnerability is tracked as CVE-2026-87521. The attack can be launched remotely. No exploit exists.

Upgrading the affected component is advised.VulDB Recent EntriesRead More