Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

CVE-2026-2323

Quick assessment

Affected
Google Chrome
Exploitation
No confirmed in-the-wild exploitation; assess based on exposure
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

Google Chrome是美国谷歌(Google)公司的一款Web浏览器。 Google Chrome 145.0.7632.45之前版本存在安全漏洞,该漏洞源于Downloads实现不当,可能导致通过特制HTML页面进行UI欺骗。

AI Predicted 3.7 Difficulty: Easy EPSS 0.23% · P13

Possible ATT&CK Techniques 1 AI

T1553.005 · Mark-of-the-Web Bypass
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2026-2323

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: CVE Program / CVE List V5
Vulnerability Description
Inappropriate implementation in Downloads in Google Chrome prior to 145.0.7632.45 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Low)
Source: CVE Program / CVE List V5
CVSS Information
N/A
Source: CVE Program / CVE List V5
Vulnerability Type
N/A
Source: CVE Program / CVE List V5
Vulnerability Title
Google Chrome 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Google Chrome是美国谷歌(Google)公司的一款Web浏览器。 Google Chrome 145.0.7632.45之前版本存在安全漏洞,该漏洞源于Downloads实现不当,可能导致通过特制HTML页面进行UI欺骗。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

Vendor Product Affected Versions CPE Subscribe
Google Chrome 145.0.7632.45 ~ 145.0.7632.45 -

II. Public POCs for CVE-2026-2323

# POC Description Source Link Shenlong Link
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2026-2323

请登录查看更多情报信息。

Same Patch Batch · Google · 2026-02-11 · 14 CVEs total

CVE-2026-1669 Arbitrary File Read in Keras via HDF5 External Datasets
CVE-2026-2322 Google Chrome 安全漏洞
CVE-2026-2320 Google Chrome 安全漏洞
CVE-2026-2321 Google Chrome 资源管理错误漏洞
CVE-2026-2318 Google Chrome 安全漏洞
CVE-2026-2319 Google Chrome 安全漏洞
CVE-2026-2317 Google Chrome 安全漏洞
CVE-2026-2316 Google Chrome 安全漏洞
CVE-2026-2315 Google Chrome 安全漏洞
CVE-2026-2314 Google Chrome 安全漏洞
CVE-2026-2313 Google Chrome 资源管理错误漏洞
CVE-2025-12474 libjxl: Uninitialized memory read in decoder due to incorrect optimization in patch handli
CVE-2026-1837 libjxl: Out-of-bounds write in grayscale color transformation when using LCMS2

IV. Related Vulnerabilities

V. Comments for CVE-2026-2323

No comments yet


Leave a comment