Tencent BrowserSkill through 0.3.0 contains an authentication bypass vulnerability in the local daemon WebSocket origin validation that accepts any chrome-extension origin with 32 characters in range a-p. Attackers can register a malicious extension as a browser client to intercept and manipulate page content, DOM, and screenshots returned to the AI agent.
Metrics
Affected Vendors & Products
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Sun, 20 Sep 2026 12:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Tencent BrowserSkill through 0.3.0 contains an authentication bypass vulnerability in the local daemon WebSocket origin validation that accepts any chrome-extension origin with 32 characters in range a-p. Attackers can register a malicious extension as a browser client to intercept and manipulate page content, DOM, and screenshots returned to the AI agent. | |
| Title | Tencent BrowserSkill through 0.3.0 Origin Validation Error in Local WebSocket Daemon | |
| Weaknesses | CWE-346 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-09-20T11:56:07.027Z
Reserved: 2026-09-20T11:41:32.291Z
Link: CVE-2026-94111
No data.
Status : Received
Published: 2026-09-20T12:17:06.787
Modified: 2026-09-20T12:17:06.787
Link: CVE-2026-94111
No data.
OpenCVE Enrichment
Updated: 2026-09-20T14:00:26Z
Weaknesses