chromium-browser: chromium-browser: Buffer overflow in V8

cve CVE-2026-102302 3 sources, 3 claims · Watch

Red Hat writes:
chromium-browser: chromium-browser: Buffer overflow in V8 the claim
Severity
high GitHub advisories
HIGH NVD
important Red Hat
CVSS
8.8 GitHub advisories
8.8 NVD
8.8 Red Hat
Fixed in
154.0.8037.92 NVD
Vendor
Google NVD
Product
Chrome NVD
CWE
CWE-121 GitHub advisories
CWE-121 NVD
CWE-787 Red Hat

How far exploitation has got

  1. No public code known
  2. Proof of concept
  3. Proof of concept, verified
  4. A Metasploit module
  5. Exploited in the wild
  6. Used in ransomware campaigns

Timeline

2026-09-29first spoke of it: Buffer overflow in V8 in Google Chrome prior to 154.0.8037.92 allowed a remote attacker to...GitHub advisories
2026-09-29first spoke of it: Buffer overflow in V8 in Google Chrome prior to 154.0.8037.92 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)NVD
2026-09-29first spoke of it: chromium-browser: chromium-browser: Buffer overflow in V8Red Hat

What it is to other things

affectsgoogle/chrome
NVD
made_bygoogle
NVD
Every value, with what each source said and its receipt
PropertySourceSaidMeans here
Automatable
automatable
NVDno
At least one of those steps needs a person.
receipt
Source
NVD
Its words
no
Read by
field:cve.metrics.ssvcV203[].ssvcData.options[].automatable
Said since
2026-10-06 12:31 UTC
Last answered
2026-10-06 12:41 UTC
Original
open at the source
2026-10-06 12:31 UTCno
2026-10-02 12:00 UTC—
What the source handed over
{
  "cve": {
    "affected": [
      {
        "affectedData": [
          {
            "product": "Chrome",
            "vendor": "Google",
            "versions": [
              {
                "lessThan": "154.0.8037.92",
                "status": "affected",
                "version": "154.0.8037.92",
                "versionType": "custom"
              }
            ]
          }
        ],
        "source": "chrome-cve-admin@google.com"
      }
    ],
    "configurations": [
      {
        "nodes": [
          {
            "cpeMatch": [
              {
                "criteria": "cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*",
                "matchCriteriaId": "08EB67A7-A648-4E4C-94E3-0AB355274254",
                "versionEndExcluding": "154.0.8037.92",
                "vulnerable": true
              }
            ],
            "negate": false,
            "operator": "OR"
          }
        ]
      }
    ],
    "cveTags": [],
    "descriptions": [
      {
        "lang": "en",
        "value": "Buffer overflow in V8 in Google Chrome prior to 154.0.8037.92 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)"
      }
    ],
    "id": "CVE-2026-102302",
    "lastModified": "2026-10-01T17:27:56.220",
    "metrics": {
      "cvssMetricV31": [
        {
          "cvssData": {
            "attackComplexity": "LOW",
            "attackVector": "NETWORK",
            "availabilityImpact": "HIGH",
            "baseScore": 8.8,
            "baseSeverity": "HIGH",
            "confidentialityImpact": "HIGH",
            "integrityImpact": "HIGH",
            "privilegesRequired": "NONE",
            "scope": "UNCHANGED",
            "userInteraction": "REQUIRED",
            "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H",
            "version": "3.1"
          },
          "exploitabilityScore": 2.8,
          "impactScore": 5.9,
          "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
          "type": "Secondary"
        }
      ],
      "ssvcV203": [
        {
          "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
          "ssvcData": {
            "id": "CVE-2026-102302",
            "options": [
              {
                "exploitation": "none"
              },
              {
                "automatable": "no"
              },
              {
                "technicalImpact": "total"
              }
            ],
            "role": "CISA Coordinator",
            "timestamp": "2026-09-29T00:00:00+00:00",
            "version": "2.0.3"
          }
        }
      ]
    },
    "published": "2026-09-29T20:17:13.087",
    "references": [
      {
        "source": "chrome-cve-admin@google.com",
        "tags": [
          "Release Notes",
          "Vendor Advisory"
        ],
        "url": "https://chromereleases.googleblog.com/2026/09/stable-channel-update-for-desktop_01807488085.html"
      },
      {
        "source": "chrome-cve-admin@google.com",
        "tags": [
          "Permissions Required"
        ],
        "url": "https://issues.chromium.org/issues/563716534"
      }
    ],
    "sourceIdentifier": "chrome-cve-admin@google.com",
    "vulnStatus": "Analyzed",
    "weaknesses": [
      {
        "description": [
          {
            "lang": "en",
            "value": "CWE-121"
          }
        ],
        "source": "chrome-cve-admin@google.com",
        "type": "Secondary"
      }
    ]
  }
}
—
CVSS
cvss
GitHub advisories8.8
receipt
Source
GitHub advisories
Its words
8.8
Read by
field:cvss.score
Said since
2026-10-02 11:59 UTC
Last answered
2026-10-06 17:41 UTC
Original
open at the source
What the source handed over
{
  "credits": [],
  "cve_id": "CVE-2026-102302",
  "cvss": {
    "score": 8.8,
    "vector_string": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
  },
  "cvss_severities": {
    "cvss_v3": {
      "score": 8.8,
      "vector_string": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
    },
    "cvss_v4": {
      "score": 0.0,
      "vector_string": null
    }
  },
  "cwes": [
    {
      "cwe_id": "CWE-121",
      "name": "Stack-based Buffer Overflow"
    }
  ],
  "description": "Buffer overflow in V8 in Google Chrome prior to 154.0.8037.92 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)",
  "epss": {
    "percentage": 0.00308,
    "percentile": 0.21262
  },
  "ghsa_id": "GHSA-9x63-2qqh-fp92",
  "github_reviewed_at": null,
  "html_url": "https://github.com/advisories/GHSA-9x63-2qqh-fp92",
  "identifiers": [
    {
      "type": "GHSA",
      "value": "GHSA-9x63-2qqh-fp92"
    },
    {
      "type": "CVE",
      "value": "CVE-2026-102302"
    }
  ],
  "nvd_published_at": "2026-09-29T20:17:13Z",
  "published_at": "2026-09-29T21:33:23Z",
  "references": [
    "https://nvd.nist.gov/vuln/detail/CVE-2026-102302",
    "https://chromereleases.googleblog.com/2026/09/stable-channel-update-for-desktop_01807488085.html",
    "https://issues.chromium.org/issues/563716534",
    "https://github.com/advisories/GHSA-9x63-2qqh-fp92"
  ],
  "repository_advisory_url": null,
  "severity": "high",
  "source_code_location": "",
  "summary": "Buffer overflow in V8 in Google Chrome prior to 154.0.8037.92 allowed a remote attacker to...",
  "type": "unreviewed",
  "updated_at": "2026-09-29T21:33:30Z",
  "url": "https://api.github.com/advisories/GHSA-9x63-2qqh-fp92",
  "vulnerabilities": [],
  "withdrawn_at": null
}
—
CVSS
cvss
NVD8.8
receipt
Source
NVD
Its words
8.8
Read by
field:cve.metrics.cvssMetricV31[type=Primary].cvssData.baseScore || field:cve.metrics.cvssMetricV31[].cvssData.baseScore
Said since
2026-10-02 12:00 UTC
Last answered
2026-10-06 12:41 UTC
Original
open at the source
What the source handed over
{
  "cve": {
    "affected": [
      {
        "affectedData": [
          {
            "product": "Chrome",
            "vendor": "Google",
            "versions": [
              {
                "lessThan": "154.0.8037.92",
                "status": "affected",
                "version": "154.0.8037.92",
                "versionType": "custom"
              }
            ]
          }
        ],
        "source": "chrome-cve-admin@google.com"
      }
    ],
    "configurations": [
      {
        "nodes": [
          {
            "cpeMatch": [
              {
                "criteria": "cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*",
                "matchCriteriaId": "08EB67A7-A648-4E4C-94E3-0AB355274254",
                "versionEndExcluding": "154.0.8037.92",
                "vulnerable": true
              }
            ],
            "negate": false,
            "operator": "OR"
          }
        ]
      }
    ],
    "cveTags": [],
    "descriptions": [
      {
        "lang": "en",
        "value": "Buffer overflow in V8 in Google Chrome prior to 154.0.8037.92 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)"
      }
    ],
    "id": "CVE-2026-102302",
    "lastModified": "2026-10-01T17:27:56.220",
    "metrics": {
      "cvssMetricV31": [
        {
          "cvssData": {
            "attackComplexity": "LOW",
            "attackVector": "NETWORK",
            "availabilityImpact": "HIGH",
            "baseScore": 8.8,
            "baseSeverity": "HIGH",
            "confidentialityImpact": "HIGH",
            "integrityImpact": "HIGH",
            "privilegesRequired": "NONE",
            "scope": "UNCHANGED",
            "userInteraction": "REQUIRED",
            "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H",
            "version": "3.1"
          },
          "exploitabilityScore": 2.8,
          "impactScore": 5.9,
          "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
          "type": "Secondary"
        }
      ],
      "ssvcV203": [
        {
          "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
          "ssvcData": {
            "id": "CVE-2026-102302",
            "options": [
              {
                "exploitation": "none"
              },
              {
                "automatable": "no"
              },
              {
                "technicalImpact": "total"
              }
            ],
            "role": "CISA Coordinator",
            "timestamp": "2026-09-29T00:00:00+00:00",
            "version": "2.0.3"
          }
        }
      ]
    },
    "published": "2026-09-29T20:17:13.087",
    "references": [
      {
        "source": "chrome-cve-admin@google.com",
        "tags": [
          "Release Notes",
          "Vendor Advisory"
        ],
        "url": "https://chromereleases.googleblog.com/2026/09/stable-channel-update-for-desktop_01807488085.html"
      },
      {
        "source": "chrome-cve-admin@google.com",
        "tags": [
          "Permissions Required"
        ],
        "url": "https://issues.chromium.org/issues/563716534"
      }
    ],
    "sourceIdentifier": "chrome-cve-admin@google.com",
    "vulnStatus": "Analyzed",
    "weaknesses": [
      {
        "description": [
          {
            "lang": "en",
            "value": "CWE-121"
          }
        ],
        "source": "chrome-cve-admin@google.com",
        "type": "Secondary"
      }
    ]
  }
}
—
CVSS
cvss
Red Hat8.8
receipt
Source
Red Hat
Its words
8.8
Read by
field:cvss3_score
Said since
2026-10-02 12:01 UTC
Last answered
2026-10-06 13:02 UTC
Original
open at the source
What the source handed over
{
  "CVE": "CVE-2026-102302",
  "CWE": "CWE-787",
  "advisories": [],
  "affected_packages": [],
  "bugzilla": "2543554",
  "bugzilla_description": "chromium-browser: chromium-browser: Buffer overflow in V8",
  "cvss3_score": "8.8",
  "cvss3_scoring_vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H",
  "cvss_score": null,
  "cvss_scoring_vector": null,
  "package_state": null,
  "public_date": "2026-09-29T19:45:06Z",
  "resource_url": "https://access.redhat.com/hydra/rest/securitydata/cve/CVE-2026-102302.json",
  "severity": "important"
}
—
CVSS vector
cvss_vector
NVDCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
receipt
Source
NVD
Its words
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Read by
field:cve.metrics.cvssMetricV31[type=Primary].cvssData.vectorString || field:cve.metrics.cvssMetricV31[].cvssData.vectorString
Said since
2026-10-06 12:31 UTC
Last answered
2026-10-06 12:41 UTC
Original
open at the source
2026-10-06 12:31 UTCCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
2026-10-02 12:00 UTC—
What the source handed over
{
  "cve": {
    "affected": [
      {
        "affectedData": [
          {
            "product": "Chrome",
            "vendor": "Google",
            "versions": [
              {
                "lessThan": "154.0.8037.92",
                "status": "affected",
                "version": "154.0.8037.92",
                "versionType": "custom"
              }
            ]
          }
        ],
        "source": "chrome-cve-admin@google.com"
      }
    ],
    "configurations": [
      {
        "nodes": [
          {
            "cpeMatch": [
              {
                "criteria": "cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*",
                "matchCriteriaId": "08EB67A7-A648-4E4C-94E3-0AB355274254",
                "versionEndExcluding": "154.0.8037.92",
                "vulnerable": true
              }
            ],
            "negate": false,
            "operator": "OR"
          }
        ]
      }
    ],
    "cveTags": [],
    "descriptions": [
      {
        "lang": "en",
        "value": "Buffer overflow in V8 in Google Chrome prior to 154.0.8037.92 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)"
      }
    ],
    "id": "CVE-2026-102302",
    "lastModified": "2026-10-01T17:27:56.220",
    "metrics": {
      "cvssMetricV31": [
        {
          "cvssData": {
            "attackComplexity": "LOW",
            "attackVector": "NETWORK",
            "availabilityImpact": "HIGH",
            "baseScore": 8.8,
            "baseSeverity": "HIGH",
            "confidentialityImpact": "HIGH",
            "integrityImpact": "HIGH",
            "privilegesRequired": "NONE",
            "scope": "UNCHANGED",
            "userInteraction": "REQUIRED",
            "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H",
            "version": "3.1"
          },
          "exploitabilityScore": 2.8,
          "impactScore": 5.9,
          "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
          "type": "Secondary"
        }
      ],
      "ssvcV203": [
        {
          "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
          "ssvcData": {
            "id": "CVE-2026-102302",
            "options": [
              {
                "exploitation": "none"
              },
              {
                "automatable": "no"
              },
              {
                "technicalImpact": "total"
              }
            ],
            "role": "CISA Coordinator",
            "timestamp": "2026-09-29T00:00:00+00:00",
            "version": "2.0.3"
          }
        }
      ]
    },
    "published": "2026-09-29T20:17:13.087",
    "references": [
      {
        "source": "chrome-cve-admin@google.com",
        "tags": [
          "Release Notes",
          "Vendor Advisory"
        ],
        "url": "https://chromereleases.googleblog.com/2026/09/stable-channel-update-for-desktop_01807488085.html"
      },
      {
        "source": "chrome-cve-admin@google.com",
        "tags": [
          "Permissions Required"
        ],
        "url": "https://issues.chromium.org/issues/563716534"
      }
    ],
    "sourceIdentifier": "chrome-cve-admin@google.com",
    "vulnStatus": "Analyzed",
    "weaknesses": [
      {
        "description": [
          {
            "lang": "en",
            "value": "CWE-121"
          }
        ],
        "source": "chrome-cve-admin@google.com",
        "type": "Secondary"
      }
    ]
  }
}
—
CVSS vector
cvss_vector
Red HatCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
receipt
Source
Red Hat
Its words
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Read by
field:cvss3_scoring_vector
Said since
2026-10-06 13:01 UTC
Last answered
2026-10-06 13:02 UTC
Original
open at the source
2026-10-06 13:01 UTCCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
2026-10-02 12:01 UTC—
What the source handed over
{
  "CVE": "CVE-2026-102302",
  "CWE": "CWE-787",
  "advisories": [],
  "affected_packages": [],
  "bugzilla": "2543554",
  "bugzilla_description": "chromium-browser: chromium-browser: Buffer overflow in V8",
  "cvss3_score": "8.8",
  "cvss3_scoring_vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H",
  "cvss_score": null,
  "cvss_scoring_vector": null,
  "package_state": null,
  "public_date": "2026-09-29T19:45:06Z",
  "resource_url": "https://access.redhat.com/hydra/rest/securitydata/cve/CVE-2026-102302.json",
  "severity": "important"
}
—
CWE
cwe
different words
GitHub advisoriesCWE-121
receipt
Source
GitHub advisories
Its words
CWE-121
Read by
field:cwes[].cwe_id
Said since
2026-10-02 11:59 UTC
Last answered
2026-10-06 17:41 UTC
Original
open at the source
What the source handed over
{
  "credits": [],
  "cve_id": "CVE-2026-102302",
  "cvss": {
    "score": 8.8,
    "vector_string": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
  },
  "cvss_severities": {
    "cvss_v3": {
      "score": 8.8,
      "vector_string": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
    },
    "cvss_v4": {
      "score": 0.0,
      "vector_string": null
    }
  },
  "cwes": [
    {
      "cwe_id": "CWE-121",
      "name": "Stack-based Buffer Overflow"
    }
  ],
  "description": "Buffer overflow in V8 in Google Chrome prior to 154.0.8037.92 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)",
  "epss": {
    "percentage": 0.00308,
    "percentile": 0.21262
  },
  "ghsa_id": "GHSA-9x63-2qqh-fp92",
  "github_reviewed_at": null,
  "html_url": "https://github.com/advisories/GHSA-9x63-2qqh-fp92",
  "identifiers": [
    {
      "type": "GHSA",
      "value": "GHSA-9x63-2qqh-fp92"
    },
    {
      "type": "CVE",
      "value": "CVE-2026-102302"
    }
  ],
  "nvd_published_at": "2026-09-29T20:17:13Z",
  "published_at": "2026-09-29T21:33:23Z",
  "references": [
    "https://nvd.nist.gov/vuln/detail/CVE-2026-102302",
    "https://chromereleases.googleblog.com/2026/09/stable-channel-update-for-desktop_01807488085.html",
    "https://issues.chromium.org/issues/563716534",
    "https://github.com/advisories/GHSA-9x63-2qqh-fp92"
  ],
  "repository_advisory_url": null,
  "severity": "high",
  "source_code_location": "",
  "summary": "Buffer overflow in V8 in Google Chrome prior to 154.0.8037.92 allowed a remote attacker to...",
  "type": "unreviewed",
  "updated_at": "2026-09-29T21:33:30Z",
  "url": "https://api.github.com/advisories/GHSA-9x63-2qqh-fp92",
  "vulnerabilities": [],
  "withdrawn_at": null
}
—
CWE
cwe
different words
NVDCWE-121
receipt
Source
NVD
Its words
CWE-121
Read by
field:cve.weaknesses[].description[].value
Said since
2026-10-06 12:31 UTC
Last answered
2026-10-06 12:41 UTC
Original
open at the source
2026-10-06 12:31 UTCCWE-121
2026-10-02 12:00 UTC—
What the source handed over
{
  "cve": {
    "affected": [
      {
        "affectedData": [
          {
            "product": "Chrome",
            "vendor": "Google",
            "versions": [
              {
                "lessThan": "154.0.8037.92",
                "status": "affected",
                "version": "154.0.8037.92",
                "versionType": "custom"
              }
            ]
          }
        ],
        "source": "chrome-cve-admin@google.com"
      }
    ],
    "configurations": [
      {
        "nodes": [
          {
            "cpeMatch": [
              {
                "criteria": "cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*",
                "matchCriteriaId": "08EB67A7-A648-4E4C-94E3-0AB355274254",
                "versionEndExcluding": "154.0.8037.92",
                "vulnerable": true
              }
            ],
            "negate": false,
            "operator": "OR"
          }
        ]
      }
    ],
    "cveTags": [],
    "descriptions": [
      {
        "lang": "en",
        "value": "Buffer overflow in V8 in Google Chrome prior to 154.0.8037.92 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)"
      }
    ],
    "id": "CVE-2026-102302",
    "lastModified": "2026-10-01T17:27:56.220",
    "metrics": {
      "cvssMetricV31": [
        {
          "cvssData": {
            "attackComplexity": "LOW",
            "attackVector": "NETWORK",
            "availabilityImpact": "HIGH",
            "baseScore": 8.8,
            "baseSeverity": "HIGH",
            "confidentialityImpact": "HIGH",
            "integrityImpact": "HIGH",
            "privilegesRequired": "NONE",
            "scope": "UNCHANGED",
            "userInteraction": "REQUIRED",
            "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H",
            "version": "3.1"
          },
          "exploitabilityScore": 2.8,
          "impactScore": 5.9,
          "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
          "type": "Secondary"
        }
      ],
      "ssvcV203": [
        {
          "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
          "ssvcData": {
            "id": "CVE-2026-102302",
            "options": [
              {
                "exploitation": "none"
              },
              {
                "automatable": "no"
              },
              {
                "technicalImpact": "total"
              }
            ],
            "role": "CISA Coordinator",
            "timestamp": "2026-09-29T00:00:00+00:00",
            "version": "2.0.3"
          }
        }
      ]
    },
    "published": "2026-09-29T20:17:13.087",
    "references": [
      {
        "source": "chrome-cve-admin@google.com",
        "tags": [
          "Release Notes",
          "Vendor Advisory"
        ],
        "url": "https://chromereleases.googleblog.com/2026/09/stable-channel-update-for-desktop_01807488085.html"
      },
      {
        "source": "chrome-cve-admin@google.com",
        "tags": [
          "Permissions Required"
        ],
        "url": "https://issues.chromium.org/issues/563716534"
      }
    ],
    "sourceIdentifier": "chrome-cve-admin@google.com",
    "vulnStatus": "Analyzed",
    "weaknesses": [
      {
        "description": [
          {
            "lang": "en",
            "value": "CWE-121"
          }
        ],
        "source": "chrome-cve-admin@google.com",
        "type": "Secondary"
      }
    ]
  }
}
—
CWE
cwe
different words
Red HatCWE-787
receipt
Source
Red Hat
Its words
CWE-787
Read by
field:CWE
Said since
2026-10-02 12:01 UTC
Last answered
2026-10-06 13:02 UTC
Original
open at the source
What the source handed over
{
  "CVE": "CVE-2026-102302",
  "CWE": "CWE-787",
  "advisories": [],
  "affected_packages": [],
  "bugzilla": "2543554",
  "bugzilla_description": "chromium-browser: chromium-browser: Buffer overflow in V8",
  "cvss3_score": "8.8",
  "cvss3_scoring_vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H",
  "cvss_score": null,
  "cvss_scoring_vector": null,
  "package_state": null,
  "public_date": "2026-09-29T19:45:06Z",
  "resource_url": "https://access.redhat.com/hydra/rest/securitydata/cve/CVE-2026-102302.json",
  "severity": "important"
}
—
Exploitation
exploitation
NVDnone
No evidence of exploitation, and no public proof of concept.
receipt
Source
NVD
Its words
none
Read by
field:cve.metrics.ssvcV203[].ssvcData.options[].exploitation
Said since
2026-10-06 12:31 UTC
Last answered
2026-10-06 12:41 UTC
Original
open at the source
2026-10-06 12:31 UTCnone
2026-10-02 12:00 UTC—
What the source handed over
{
  "cve": {
    "affected": [
      {
        "affectedData": [
          {
            "product": "Chrome",
            "vendor": "Google",
            "versions": [
              {
                "lessThan": "154.0.8037.92",
                "status": "affected",
                "version": "154.0.8037.92",
                "versionType": "custom"
              }
            ]
          }
        ],
        "source": "chrome-cve-admin@google.com"
      }
    ],
    "configurations": [
      {
        "nodes": [
          {
            "cpeMatch": [
              {
                "criteria": "cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*",
                "matchCriteriaId": "08EB67A7-A648-4E4C-94E3-0AB355274254",
                "versionEndExcluding": "154.0.8037.92",
                "vulnerable": true
              }
            ],
            "negate": false,
            "operator": "OR"
          }
        ]
      }
    ],
    "cveTags": [],
    "descriptions": [
      {
        "lang": "en",
        "value": "Buffer overflow in V8 in Google Chrome prior to 154.0.8037.92 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)"
      }
    ],
    "id": "CVE-2026-102302",
    "lastModified": "2026-10-01T17:27:56.220",
    "metrics": {
      "cvssMetricV31": [
        {
          "cvssData": {
            "attackComplexity": "LOW",
            "attackVector": "NETWORK",
            "availabilityImpact": "HIGH",
            "baseScore": 8.8,
            "baseSeverity": "HIGH",
            "confidentialityImpact": "HIGH",
            "integrityImpact": "HIGH",
            "privilegesRequired": "NONE",
            "scope": "UNCHANGED",
            "userInteraction": "REQUIRED",
            "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H",
            "version": "3.1"
          },
          "exploitabilityScore": 2.8,
          "impactScore": 5.9,
          "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
          "type": "Secondary"
        }
      ],
      "ssvcV203": [
        {
          "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
          "ssvcData": {
            "id": "CVE-2026-102302",
            "options": [
              {
                "exploitation": "none"
              },
              {
                "automatable": "no"
              },
              {
                "technicalImpact": "total"
              }
            ],
            "role": "CISA Coordinator",
            "timestamp": "2026-09-29T00:00:00+00:00",
            "version": "2.0.3"
          }
        }
      ]
    },
    "published": "2026-09-29T20:17:13.087",
    "references": [
      {
        "source": "chrome-cve-admin@google.com",
        "tags": [
          "Release Notes",
          "Vendor Advisory"
        ],
        "url": "https://chromereleases.googleblog.com/2026/09/stable-channel-update-for-desktop_01807488085.html"
      },
      {
        "source": "chrome-cve-admin@google.com",
        "tags": [
          "Permissions Required"
        ],
        "url": "https://issues.chromium.org/issues/563716534"
      }
    ],
    "sourceIdentifier": "chrome-cve-admin@google.com",
    "vulnStatus": "Analyzed",
    "weaknesses": [
      {
        "description": [
          {
            "lang": "en",
            "value": "CWE-121"
          }
        ],
        "source": "chrome-cve-admin@google.com",
        "type": "Secondary"
      }
    ]
  }
}
—
Fixed in
fixed_in
NVD154.0.8037.92
receipt
Source
NVD
Its words
154.0.8037.92
Read by
field:cve.affected[].affectedData[].versions[status=affected].lessThan
Said since
2026-10-06 12:31 UTC
Last answered
2026-10-06 12:41 UTC
Original
open at the source
2026-10-06 12:31 UTC154.0.8037.92
2026-10-02 12:00 UTC—
What the source handed over
{
  "cve": {
    "affected": [
      {
        "affectedData": [
          {
            "product": "Chrome",
            "vendor": "Google",
            "versions": [
              {
                "lessThan": "154.0.8037.92",
                "status": "affected",
                "version": "154.0.8037.92",
                "versionType": "custom"
              }
            ]
          }
        ],
        "source": "chrome-cve-admin@google.com"
      }
    ],
    "configurations": [
      {
        "nodes": [
          {
            "cpeMatch": [
              {
                "criteria": "cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*",
                "matchCriteriaId": "08EB67A7-A648-4E4C-94E3-0AB355274254",
                "versionEndExcluding": "154.0.8037.92",
                "vulnerable": true
              }
            ],
            "negate": false,
            "operator": "OR"
          }
        ]
      }
    ],
    "cveTags": [],
    "descriptions": [
      {
        "lang": "en",
        "value": "Buffer overflow in V8 in Google Chrome prior to 154.0.8037.92 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)"
      }
    ],
    "id": "CVE-2026-102302",
    "lastModified": "2026-10-01T17:27:56.220",
    "metrics": {
      "cvssMetricV31": [
        {
          "cvssData": {
            "attackComplexity": "LOW",
            "attackVector": "NETWORK",
            "availabilityImpact": "HIGH",
            "baseScore": 8.8,
            "baseSeverity": "HIGH",
            "confidentialityImpact": "HIGH",
            "integrityImpact": "HIGH",
            "privilegesRequired": "NONE",
            "scope": "UNCHANGED",
            "userInteraction": "REQUIRED",
            "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H",
            "version": "3.1"
          },
          "exploitabilityScore": 2.8,
          "impactScore": 5.9,
          "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
          "type": "Secondary"
        }
      ],
      "ssvcV203": [
        {
          "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
          "ssvcData": {
            "id": "CVE-2026-102302",
            "options": [
              {
                "exploitation": "none"
              },
              {
                "automatable": "no"
              },
              {
                "technicalImpact": "total"
              }
            ],
            "role": "CISA Coordinator",
            "timestamp": "2026-09-29T00:00:00+00:00",
            "version": "2.0.3"
          }
        }
      ]
    },
    "published": "2026-09-29T20:17:13.087",
    "references": [
      {
        "source": "chrome-cve-admin@google.com",
        "tags": [
          "Release Notes",
          "Vendor Advisory"
        ],
        "url": "https://chromereleases.googleblog.com/2026/09/stable-channel-update-for-desktop_01807488085.html"
      },
      {
        "source": "chrome-cve-admin@google.com",
        "tags": [
          "Permissions Required"
        ],
        "url": "https://issues.chromium.org/issues/563716534"
      }
    ],
    "sourceIdentifier": "chrome-cve-admin@google.com",
    "vulnStatus": "Analyzed",
    "weaknesses": [
      {
        "description": [
          {
            "lang": "en",
            "value": "CWE-121"
          }
        ],
        "source": "chrome-cve-admin@google.com",
        "type": "Secondary"
      }
    ]
  }
}
—
Product
product
NVDChrome
receipt
Source
NVD
Its words
Chrome
Read by
field:cve.affected[].affectedData[].product
Said since
2026-10-02 12:00 UTC
Last answered
2026-10-06 12:41 UTC
Original
open at the source
What the source handed over
{
  "cve": {
    "affected": [
      {
        "affectedData": [
          {
            "product": "Chrome",
            "vendor": "Google",
            "versions": [
              {
                "lessThan": "154.0.8037.92",
                "status": "affected",
                "version": "154.0.8037.92",
                "versionType": "custom"
              }
            ]
          }
        ],
        "source": "chrome-cve-admin@google.com"
      }
    ],
    "configurations": [
      {
        "nodes": [
          {
            "cpeMatch": [
              {
                "criteria": "cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*",
                "matchCriteriaId": "08EB67A7-A648-4E4C-94E3-0AB355274254",
                "versionEndExcluding": "154.0.8037.92",
                "vulnerable": true
              }
            ],
            "negate": false,
            "operator": "OR"
          }
        ]
      }
    ],
    "cveTags": [],
    "descriptions": [
      {
        "lang": "en",
        "value": "Buffer overflow in V8 in Google Chrome prior to 154.0.8037.92 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)"
      }
    ],
    "id": "CVE-2026-102302",
    "lastModified": "2026-10-01T17:27:56.220",
    "metrics": {
      "cvssMetricV31": [
        {
          "cvssData": {
            "attackComplexity": "LOW",
            "attackVector": "NETWORK",
            "availabilityImpact": "HIGH",
            "baseScore": 8.8,
            "baseSeverity": "HIGH",
            "confidentialityImpact": "HIGH",
            "integrityImpact": "HIGH",
            "privilegesRequired": "NONE",
            "scope": "UNCHANGED",
            "userInteraction": "REQUIRED",
            "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H",
            "version": "3.1"
          },
          "exploitabilityScore": 2.8,
          "impactScore": 5.9,
          "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
          "type": "Secondary"
        }
      ],
      "ssvcV203": [
        {
          "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
          "ssvcData": {
            "id": "CVE-2026-102302",
            "options": [
              {
                "exploitation": "none"
              },
              {
                "automatable": "no"
              },
              {
                "technicalImpact": "total"
              }
            ],
            "role": "CISA Coordinator",
            "timestamp": "2026-09-29T00:00:00+00:00",
            "version": "2.0.3"
          }
        }
      ]
    },
    "published": "2026-09-29T20:17:13.087",
    "references": [
      {
        "source": "chrome-cve-admin@google.com",
        "tags": [
          "Release Notes",
          "Vendor Advisory"
        ],
        "url": "https://chromereleases.googleblog.com/2026/09/stable-channel-update-for-desktop_01807488085.html"
      },
      {
        "source": "chrome-cve-admin@google.com",
        "tags": [
          "Permissions Required"
        ],
        "url": "https://issues.chromium.org/issues/563716534"
      }
    ],
    "sourceIdentifier": "chrome-cve-admin@google.com",
    "vulnStatus": "Analyzed",
    "weaknesses": [
      {
        "description": [
          {
            "lang": "en",
            "value": "CWE-121"
          }
        ],
        "source": "chrome-cve-admin@google.com",
        "type": "Secondary"
      }
    ]
  }
}
—
Severity
severity
GitHub advisorieshigh
From 7.0 to 8.9.
receipt
Source
GitHub advisories
Its words
high
Read by
field:severity
Said since
2026-10-02 11:59 UTC
Last answered
2026-10-06 17:41 UTC
Original
open at the source
What the source handed over
{
  "credits": [],
  "cve_id": "CVE-2026-102302",
  "cvss": {
    "score": 8.8,
    "vector_string": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
  },
  "cvss_severities": {
    "cvss_v3": {
      "score": 8.8,
      "vector_string": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
    },
    "cvss_v4": {
      "score": 0.0,
      "vector_string": null
    }
  },
  "cwes": [
    {
      "cwe_id": "CWE-121",
      "name": "Stack-based Buffer Overflow"
    }
  ],
  "description": "Buffer overflow in V8 in Google Chrome prior to 154.0.8037.92 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)",
  "epss": {
    "percentage": 0.00308,
    "percentile": 0.21262
  },
  "ghsa_id": "GHSA-9x63-2qqh-fp92",
  "github_reviewed_at": null,
  "html_url": "https://github.com/advisories/GHSA-9x63-2qqh-fp92",
  "identifiers": [
    {
      "type": "GHSA",
      "value": "GHSA-9x63-2qqh-fp92"
    },
    {
      "type": "CVE",
      "value": "CVE-2026-102302"
    }
  ],
  "nvd_published_at": "2026-09-29T20:17:13Z",
  "published_at": "2026-09-29T21:33:23Z",
  "references": [
    "https://nvd.nist.gov/vuln/detail/CVE-2026-102302",
    "https://chromereleases.googleblog.com/2026/09/stable-channel-update-for-desktop_01807488085.html",
    "https://issues.chromium.org/issues/563716534",
    "https://github.com/advisories/GHSA-9x63-2qqh-fp92"
  ],
  "repository_advisory_url": null,
  "severity": "high",
  "source_code_location": "",
  "summary": "Buffer overflow in V8 in Google Chrome prior to 154.0.8037.92 allowed a remote attacker to...",
  "type": "unreviewed",
  "updated_at": "2026-09-29T21:33:30Z",
  "url": "https://api.github.com/advisories/GHSA-9x63-2qqh-fp92",
  "vulnerabilities": [],
  "withdrawn_at": null
}
—
Severity
severity
NVDHIGH
From 7.0 to 8.9.
receipt
Source
NVD
Its words
HIGH
Read by
field:cve.metrics.cvssMetricV31[type=Primary].cvssData.baseSeverity || field:cve.metrics.cvssMetricV31[].cvssData.baseSeverity
Said since
2026-10-06 12:31 UTC
Last answered
2026-10-06 12:41 UTC
Original
open at the source
2026-10-06 12:31 UTCHIGH
2026-10-02 12:00 UTC—
What the source handed over
{
  "cve": {
    "affected": [
      {
        "affectedData": [
          {
            "product": "Chrome",
            "vendor": "Google",
            "versions": [
              {
                "lessThan": "154.0.8037.92",
                "status": "affected",
                "version": "154.0.8037.92",
                "versionType": "custom"
              }
            ]
          }
        ],
        "source": "chrome-cve-admin@google.com"
      }
    ],
    "configurations": [
      {
        "nodes": [
          {
            "cpeMatch": [
              {
                "criteria": "cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*",
                "matchCriteriaId": "08EB67A7-A648-4E4C-94E3-0AB355274254",
                "versionEndExcluding": "154.0.8037.92",
                "vulnerable": true
              }
            ],
            "negate": false,
            "operator": "OR"
          }
        ]
      }
    ],
    "cveTags": [],
    "descriptions": [
      {
        "lang": "en",
        "value": "Buffer overflow in V8 in Google Chrome prior to 154.0.8037.92 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)"
      }
    ],
    "id": "CVE-2026-102302",
    "lastModified": "2026-10-01T17:27:56.220",
    "metrics": {
      "cvssMetricV31": [
        {
          "cvssData": {
            "attackComplexity": "LOW",
            "attackVector": "NETWORK",
            "availabilityImpact": "HIGH",
            "baseScore": 8.8,
            "baseSeverity": "HIGH",
            "confidentialityImpact": "HIGH",
            "integrityImpact": "HIGH",
            "privilegesRequired": "NONE",
            "scope": "UNCHANGED",
            "userInteraction": "REQUIRED",
            "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H",
            "version": "3.1"
          },
          "exploitabilityScore": 2.8,
          "impactScore": 5.9,
          "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
          "type": "Secondary"
        }
      ],
      "ssvcV203": [
        {
          "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
          "ssvcData": {
            "id": "CVE-2026-102302",
            "options": [
              {
                "exploitation": "none"
              },
              {
                "automatable": "no"
              },
              {
                "technicalImpact": "total"
              }
            ],
            "role": "CISA Coordinator",
            "timestamp": "2026-09-29T00:00:00+00:00",
            "version": "2.0.3"
          }
        }
      ]
    },
    "published": "2026-09-29T20:17:13.087",
    "references": [
      {
        "source": "chrome-cve-admin@google.com",
        "tags": [
          "Release Notes",
          "Vendor Advisory"
        ],
        "url": "https://chromereleases.googleblog.com/2026/09/stable-channel-update-for-desktop_01807488085.html"
      },
      {
        "source": "chrome-cve-admin@google.com",
        "tags": [
          "Permissions Required"
        ],
        "url": "https://issues.chromium.org/issues/563716534"
      }
    ],
    "sourceIdentifier": "chrome-cve-admin@google.com",
    "vulnStatus": "Analyzed",
    "weaknesses": [
      {
        "description": [
          {
            "lang": "en",
            "value": "CWE-121"
          }
        ],
        "source": "chrome-cve-admin@google.com",
        "type": "Secondary"
      }
    ]
  }
}
high
Severity
severity
Red Hatimportant
A flaw that can easily compromise confidentiality, integrity or availability.
receipt
Source
Red Hat
Its words
important
Read by
field:severity
Said since
2026-10-02 12:01 UTC
Last answered
2026-10-06 13:02 UTC
Original
open at the source
What the source handed over
{
  "CVE": "CVE-2026-102302",
  "CWE": "CWE-787",
  "advisories": [],
  "affected_packages": [],
  "bugzilla": "2543554",
  "bugzilla_description": "chromium-browser: chromium-browser: Buffer overflow in V8",
  "cvss3_score": "8.8",
  "cvss3_scoring_vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H",
  "cvss_score": null,
  "cvss_scoring_vector": null,
  "package_state": null,
  "public_date": "2026-09-29T19:45:06Z",
  "resource_url": "https://access.redhat.com/hydra/rest/securitydata/cve/CVE-2026-102302.json",
  "severity": "important"
}
high
Status
status
NVDAnalyzed
receipt
Source
NVD
Its words
Analyzed
Read by
field:cve.vulnStatus
Said since
2026-10-02 12:00 UTC
Last answered
2026-10-06 12:41 UTC
Original
open at the source
What the source handed over
{
  "cve": {
    "affected": [
      {
        "affectedData": [
          {
            "product": "Chrome",
            "vendor": "Google",
            "versions": [
              {
                "lessThan": "154.0.8037.92",
                "status": "affected",
                "version": "154.0.8037.92",
                "versionType": "custom"
              }
            ]
          }
        ],
        "source": "chrome-cve-admin@google.com"
      }
    ],
    "configurations": [
      {
        "nodes": [
          {
            "cpeMatch": [
              {
                "criteria": "cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*",
                "matchCriteriaId": "08EB67A7-A648-4E4C-94E3-0AB355274254",
                "versionEndExcluding": "154.0.8037.92",
                "vulnerable": true
              }
            ],
            "negate": false,
            "operator": "OR"
          }
        ]
      }
    ],
    "cveTags": [],
    "descriptions": [
      {
        "lang": "en",
        "value": "Buffer overflow in V8 in Google Chrome prior to 154.0.8037.92 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)"
      }
    ],
    "id": "CVE-2026-102302",
    "lastModified": "2026-10-01T17:27:56.220",
    "metrics": {
      "cvssMetricV31": [
        {
          "cvssData": {
            "attackComplexity": "LOW",
            "attackVector": "NETWORK",
            "availabilityImpact": "HIGH",
            "baseScore": 8.8,
            "baseSeverity": "HIGH",
            "confidentialityImpact": "HIGH",
            "integrityImpact": "HIGH",
            "privilegesRequired": "NONE",
            "scope": "UNCHANGED",
            "userInteraction": "REQUIRED",
            "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H",
            "version": "3.1"
          },
          "exploitabilityScore": 2.8,
          "impactScore": 5.9,
          "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
          "type": "Secondary"
        }
      ],
      "ssvcV203": [
        {
          "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
          "ssvcData": {
            "id": "CVE-2026-102302",
            "options": [
              {
                "exploitation": "none"
              },
              {
                "automatable": "no"
              },
              {
                "technicalImpact": "total"
              }
            ],
            "role": "CISA Coordinator",
            "timestamp": "2026-09-29T00:00:00+00:00",
            "version": "2.0.3"
          }
        }
      ]
    },
    "published": "2026-09-29T20:17:13.087",
    "references": [
      {
        "source": "chrome-cve-admin@google.com",
        "tags": [
          "Release Notes",
          "Vendor Advisory"
        ],
        "url": "https://chromereleases.googleblog.com/2026/09/stable-channel-update-for-desktop_01807488085.html"
      },
      {
        "source": "chrome-cve-admin@google.com",
        "tags": [
          "Permissions Required"
        ],
        "url": "https://issues.chromium.org/issues/563716534"
      }
    ],
    "sourceIdentifier": "chrome-cve-admin@google.com",
    "vulnStatus": "Analyzed",
    "weaknesses": [
      {
        "description": [
          {
            "lang": "en",
            "value": "CWE-121"
          }
        ],
        "source": "chrome-cve-admin@google.com",
        "type": "Secondary"
      }
    ]
  }
}
—
Technical impact
technical_impact
NVDtotal
The attacker gains full control of the component, or all of its information.
receipt
Source
NVD
Its words
total
Read by
field:cve.metrics.ssvcV203[].ssvcData.options[].technicalImpact
Said since
2026-10-06 12:31 UTC
Last answered
2026-10-06 12:41 UTC
Original
open at the source
2026-10-06 12:31 UTCtotal
2026-10-02 12:00 UTC—
What the source handed over
{
  "cve": {
    "affected": [
      {
        "affectedData": [
          {
            "product": "Chrome",
            "vendor": "Google",
            "versions": [
              {
                "lessThan": "154.0.8037.92",
                "status": "affected",
                "version": "154.0.8037.92",
                "versionType": "custom"
              }
            ]
          }
        ],
        "source": "chrome-cve-admin@google.com"
      }
    ],
    "configurations": [
      {
        "nodes": [
          {
            "cpeMatch": [
              {
                "criteria": "cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*",
                "matchCriteriaId": "08EB67A7-A648-4E4C-94E3-0AB355274254",
                "versionEndExcluding": "154.0.8037.92",
                "vulnerable": true
              }
            ],
            "negate": false,
            "operator": "OR"
          }
        ]
      }
    ],
    "cveTags": [],
    "descriptions": [
      {
        "lang": "en",
        "value": "Buffer overflow in V8 in Google Chrome prior to 154.0.8037.92 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)"
      }
    ],
    "id": "CVE-2026-102302",
    "lastModified": "2026-10-01T17:27:56.220",
    "metrics": {
      "cvssMetricV31": [
        {
          "cvssData": {
            "attackComplexity": "LOW",
            "attackVector": "NETWORK",
            "availabilityImpact": "HIGH",
            "baseScore": 8.8,
            "baseSeverity": "HIGH",
            "confidentialityImpact": "HIGH",
            "integrityImpact": "HIGH",
            "privilegesRequired": "NONE",
            "scope": "UNCHANGED",
            "userInteraction": "REQUIRED",
            "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H",
            "version": "3.1"
          },
          "exploitabilityScore": 2.8,
          "impactScore": 5.9,
          "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
          "type": "Secondary"
        }
      ],
      "ssvcV203": [
        {
          "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
          "ssvcData": {
            "id": "CVE-2026-102302",
            "options": [
              {
                "exploitation": "none"
              },
              {
                "automatable": "no"
              },
              {
                "technicalImpact": "total"
              }
            ],
            "role": "CISA Coordinator",
            "timestamp": "2026-09-29T00:00:00+00:00",
            "version": "2.0.3"
          }
        }
      ]
    },
    "published": "2026-09-29T20:17:13.087",
    "references": [
      {
        "source": "chrome-cve-admin@google.com",
        "tags": [
          "Release Notes",
          "Vendor Advisory"
        ],
        "url": "https://chromereleases.googleblog.com/2026/09/stable-channel-update-for-desktop_01807488085.html"
      },
      {
        "source": "chrome-cve-admin@google.com",
        "tags": [
          "Permissions Required"
        ],
        "url": "https://issues.chromium.org/issues/563716534"
      }
    ],
    "sourceIdentifier": "chrome-cve-admin@google.com",
    "vulnStatus": "Analyzed",
    "weaknesses": [
      {
        "description": [
          {
            "lang": "en",
            "value": "CWE-121"
          }
        ],
        "source": "chrome-cve-admin@google.com",
        "type": "Secondary"
      }
    ]
  }
}
—
Vendor
vendor
NVDGoogle
receipt
Source
NVD
Its words
Google
Read by
field:cve.affected[].affectedData[].vendor
Said since
2026-10-02 12:00 UTC
Last answered
2026-10-06 12:41 UTC
Original
open at the source
What the source handed over
{
  "cve": {
    "affected": [
      {
        "affectedData": [
          {
            "product": "Chrome",
            "vendor": "Google",
            "versions": [
              {
                "lessThan": "154.0.8037.92",
                "status": "affected",
                "version": "154.0.8037.92",
                "versionType": "custom"
              }
            ]
          }
        ],
        "source": "chrome-cve-admin@google.com"
      }
    ],
    "configurations": [
      {
        "nodes": [
          {
            "cpeMatch": [
              {
                "criteria": "cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*",
                "matchCriteriaId": "08EB67A7-A648-4E4C-94E3-0AB355274254",
                "versionEndExcluding": "154.0.8037.92",
                "vulnerable": true
              }
            ],
            "negate": false,
            "operator": "OR"
          }
        ]
      }
    ],
    "cveTags": [],
    "descriptions": [
      {
        "lang": "en",
        "value": "Buffer overflow in V8 in Google Chrome prior to 154.0.8037.92 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)"
      }
    ],
    "id": "CVE-2026-102302",
    "lastModified": "2026-10-01T17:27:56.220",
    "metrics": {
      "cvssMetricV31": [
        {
          "cvssData": {
            "attackComplexity": "LOW",
            "attackVector": "NETWORK",
            "availabilityImpact": "HIGH",
            "baseScore": 8.8,
            "baseSeverity": "HIGH",
            "confidentialityImpact": "HIGH",
            "integrityImpact": "HIGH",
            "privilegesRequired": "NONE",
            "scope": "UNCHANGED",
            "userInteraction": "REQUIRED",
            "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H",
            "version": "3.1"
          },
          "exploitabilityScore": 2.8,
          "impactScore": 5.9,
          "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
          "type": "Secondary"
        }
      ],
      "ssvcV203": [
        {
          "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
          "ssvcData": {
            "id": "CVE-2026-102302",
            "options": [
              {
                "exploitation": "none"
              },
              {
                "automatable": "no"
              },
              {
                "technicalImpact": "total"
              }
            ],
            "role": "CISA Coordinator",
            "timestamp": "2026-09-29T00:00:00+00:00",
            "version": "2.0.3"
          }
        }
      ]
    },
    "published": "2026-09-29T20:17:13.087",
    "references": [
      {
        "source": "chrome-cve-admin@google.com",
        "tags": [
          "Release Notes",
          "Vendor Advisory"
        ],
        "url": "https://chromereleases.googleblog.com/2026/09/stable-channel-update-for-desktop_01807488085.html"
      },
      {
        "source": "chrome-cve-admin@google.com",
        "tags": [
          "Permissions Required"
        ],
        "url": "https://issues.chromium.org/issues/563716534"
      }
    ],
    "sourceIdentifier": "chrome-cve-admin@google.com",
    "vulnStatus": "Analyzed",
    "weaknesses": [
      {
        "description": [
          {
            "lang": "en",
            "value": "CWE-121"
          }
        ],
        "source": "chrome-cve-admin@google.com",
        "type": "Secondary"
      }
    ]
  }
}
—
Every claim, by kind

vulnerability

chromium-browser: chromium-browser: Buffer overflow in V8
zetlyn/cve-redhat · 2026-09-29
cvss 8.8 cvss_vector CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H cwe CWE-787 severity important source
Buffer overflow in V8 in Google Chrome prior to 154.0.8037.92 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)
zetlyn/cve-nvd · 2026-09-29
automatable no cvss 8.8 cvss_vector CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H cwe CWE-121 exploitation none fixed_in 154.0.8037.92 product Chrome severity HIGH status Analyzed technical_impact total vendor Google source
Buffer overflow in V8 in Google Chrome prior to 154.0.8037.92 allowed a remote attacker to...
zetlyn/cve-ghsa · 2026-09-29
cvss 8.8 cwe CWE-121 severity high source