Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2026-3063

21
FAUCET Score

CVE-2026-3063 is a high-severity vulnerability in Google Chrome's DevTools, affecting versions prior to 145.0.7632.116, as well as products from Apple, Linux, and Microsoft that incorporate Chromium. It stems from an inappropriate implementation allowing an attacker to inject scripts or HTML into privileged pages. The attack requires user interaction to install a malicious extension, leading to potential information disclosure and integrity compromise. There is no evidence of active exploitation, public exploit code, or significant community discussion beyond a single mention.

Impacted Technologies

VendorProductVersion(s)CPE
>= 145.0.7632.116, < 145.0.7632.116CPE match
cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*
< 145.0.7632.116CPE matchmatch criteria
cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*
< 145.0.7632.117CPE matchmatch criteria
cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

5.4MEDIUM

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N

Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
REQUIRED
Scope
UNCHANGED
Confidentiality Impact
LOW
Integrity Impact
LOW
Availability Impact
NONE
Exploitability Score
2.8
Impact Score
2.5
CvssVersion
3.1

Exploit Intelligence

EPSS Score
0.18%
Probability of exploitation in next 30 days
EPSS Percentile
8.3%
Percentile rank of EPSS score among Peer Group
As of 2026-07-28
Model: v2026.06.15
This CVE's current EPSS score of 0.0018 is in the 7th percentile among its peer group of 26,236 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (1)

microsoftpatch availablevia msrc
Product: Microsoft Edge (Chromium-based)Fixed in: 145.0.3800.82

Vendor Advisories (2)

redhatCVE-2026-3063Important

chromium-browser: Inappropriate implementation in DevTools

Feb 23, 2026
microsoft2026-Feb/CVE-2026-3063

Chromium: CVE-2026-3063 Inappropriate implementation in DevTools

Feb 10, 2026

References

chromereleases.googleblog.com / 2026/02/stable-channel-update-for-desktop_23.html
Release Notes
issues.chromium.org / issues/485287859
Issue TrackingPermissions Required