CVE-2026-10890

Use after free in Cast in Google Chrome prior to 149.0.7827.53 allowed an attacker on the local network segment to potentially exploit heap corruption via malicious network traffic. (Chromium security severity: Critical)
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*
OR cpe:2.3:o:apple:macos:-:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2026-06-04 23:16

Updated : 2026-07-22 20:10


NVD link : CVE-2026-10890

Mitre link : CVE-2026-10890

CVE.ORG link : CVE-2026-10890


JSON object : View

Products Affected

linux

  • linux_kernel

microsoft

  • windows

google

  • chrome

apple

  • macos
CWE
CWE-416

Use After Free