EIP-2026-103583

PRE-CVE

Multiple Browsers - Audio Tag Denial of Service

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-103583. PoCs published by Chase Higgins.

AI-analyzed exploit summary This exploit demonstrates a Denial of Service (DoS) vulnerability in multiple browsers by serving a malicious HTML page with an excessive number of audio tags. The script acts as a web server that sends a crafted HTML response to trigger a crash in vulnerable browsers.

Description

Multiple Browsers - Audio Tag Denial of Service

Exploits (1)

exploitdb WORKING POC
by Chase Higgins · pythondosmultiple
https://www.exploit-db.com/exploits/12324

This exploit demonstrates a Denial of Service (DoS) vulnerability in multiple browsers by serving a malicious HTML page with an excessive number of audio tags. The script acts as a web server that sends a crafted HTML response to trigger a crash in vulnerable browsers.

Classification
Working Poc 90%
Attack Type
Dos
Complexity
Trivial
Reliability
Reliable
Target: Google Chrome 5.0.375.9 dev, Apple Safari (versions unspecified)
No auth needed
Prerequisites: A valid OGG file on the server · Victim to visit the malicious web server
devstral-2 · analyzed Feb 16, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026