CVE-2026-7977 | Google Chrome up to 147.0.7727.138 Canvas cross-domain policy (ID 497821 / Nessus ID 315031)
A vulnerability, which was classified as problematic, was found in Google Chrome. This vulnerability affects unknown code of the component Canvas. The manipulation results in permissive cross-domain policy with untrusted domains.
This vulnerability is known as CVE-2026-7977. It is possible to launch the attack remotely. No exploit is available.
You should upgrade the affected component.