CVE-2026-52873: Electron Strip Content Security Policycve-2026-52873-electron-strip-content-security-policy
Deleting or stripping Content-Security-Policy (CSP) headers in Electron webRequest hooks removes browser security protections against cross-site scripting (XSS) and unauthorized resource loading.