Object corruption in V8 in Google Chrome prior to 146.0.7680.178 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
References
| Link | Resource |
|---|---|
| https://chromereleases.googleblog.com/2026/03/stable-channel-update-for-desktop_31.html | Vendor Advisory |
| https://issues.chromium.org/issues/490642836 | Issue Tracking Permissions Required |
Configurations
Configuration 1 (hide)
| AND |
|
History
No history.
Information
Published : 2026-04-01 05:16
Updated : 2026-06-17 10:58
NVD link : CVE-2026-5279
Mitre link : CVE-2026-5279
CVE.ORG link : CVE-2026-5279
JSON object : View
Products Affected
linux
- linux_kernel
microsoft
- windows
- chrome
apple
- macos
CWE
CWE-120
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
