CVE-2026-11326 Details
Description
OpenAI Atlas before 1.2025.288.15 exposed privileged browser APIs to web content on *.openai.com origins. A cross-site scripting vulnerability in forum.openai.com could be used to access these functions, allowing access to browser history information and the ability to open or close tabs. OpenAI Atlas 1.2025.288.15 narrows access to these APIs to *.chatgpt.com; users should upgrade to 1.2025.288.15 or later.
A cross-site scripting vulnerability has been identified in OpenAI Atlas versions prior to 1.2025.288.15. This vulnerability allows web content on certain OpenAI origins to access privileged browser APIs via an inter-process communication mechanism called Mojo. The exposed APIs can be used to manipulate browser tabs and access browsing history. The issue arises from an overly permissive allowlist that grants access to these powerful APIs from all 'openai.com' and 'chatgpt.com' origins, rather than restricting it to trusted internal pages. Exploitation of this vulnerability could lead to unauthorized access to sensitive information and control over the user's browsing experience.
Users are advised to upgrade to OpenAI Atlas version 1.2025.288.15 or later, which restricts access to the exposed APIs to the 'chatgpt.com' domain.
Metrics
CVSS 4.0 Severity and Vector Strings:
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
Volerion
Assessed Jun 5, 2026CISA-ADP
Assessed Jun 5, 2026References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://www.hacktron.ai/blog/hacking-openai-atlas-browser | OAI | ExploitRemedyTechnical Analysis |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-284 | Improper Access Control | OAI |
Affected Products
| Product | Versions |
|---|---|
| OpenAI Atlas | < 1.2025.288.15 |
CPE
Remediation
| |
Change History
5 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jul 23, 2026 | CVE Translated | [email protected] |
| Jun 17, 2026 | CVE Modified | OAI |
| Jun 17, 2026 | CVE Modified | CISA-ADP |
| Jun 5, 2026 | CVE Modified | OAI |
| Jun 5, 2026 | New CVE Received | OAI |
Volerion