Uninitialized Use in Google Chrome on Android
CVE-2026-19146

5.3MEDIUM

Key Information:

Vendor

Google

Status
Vendor
CVE Published:
6 August 2026

What is CVE-2026-19146?

A vulnerability in Google Chrome for Android prior to version 151.0.7922.109 allows an attacker, who has successfully compromised the renderer process through a specially crafted HTML page, to access sensitive information from the process memory. This exploitation can lead to unauthorized disclosure of potentially critical data, jeopardizing user security and privacy.

Affected Version(s)

Chrome 151.0.7922.109

References

CVSS V3.1

Score:
5.3
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.