Use After Free Vulnerability in Google Chrome
CVE-2026-102324

Currently unrated

Key Information:

Vendor

Google

Status
Vendor
CVE Published:
29 September 2026

What is CVE-2026-102324?

A use after free vulnerability exists in the PictureInPicture feature of Google Chrome that could allow an attacker to execute arbitrary code outside the sandbox. By crafting a malicious HTML page, an attacker could potentially compromise the renderer process, posing a significant risk to users who encounter such web content. It is vital for users and administrators to update Google Chrome to mitigate this security risk.

Affected Version(s)

Chrome 154.0.8037.92

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.