Out of Bounds Memory Access Vulnerability in Google Chrome
CVE-2026-3540

8.8HIGH

Key Information:

Vendor

Google

Status
Vendor
CVE Published:
4 March 2026

What is CVE-2026-3540?

A vulnerability in the WebAudio component of Google Chrome prior to version 145.0.7632.159 enables remote attackers to exploit improper implementation details, leading to potential out of bounds memory access. This can be achieved through specially crafted HTML pages, allowing for unauthorized interactions with system memory, which could compromise the integrity and security of user devices.

Affected Version(s)

Chrome 145.0.7632.159

References

CVSS V3.1

Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.