Heap Buffer Overflow Vulnerability in Google Chrome
CVE-2026-19156

7.5HIGH

Key Information:

Vendor

Google

Status
Vendor
CVE Published:
6 August 2026

What is CVE-2026-19156?

A heap buffer overflow vulnerability exists in Google Chrome, impacting versions prior to 151.0.7922.109. This flaw could allow an attacker to exploit heap corruption by persuading users to install a malicious extension. The vulnerability highlights the risks associated with third-party extensions in web browsers, emphasizing the importance of user vigilance when managing installed plugins.

Affected Version(s)

Chrome 151.0.7922.109

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.