Use After Free Vulnerability in Google Chrome Allows Remote Code Execution
CVE-2026-4680
8.8HIGH
What is CVE-2026-4680?
A use after free vulnerability in FedCM of Google Chrome prior to version 146.0.7680.165 has been identified, which could allow a remote attacker to execute arbitrary code within a sandboxed environment through a specially crafted HTML webpage. This demonstrates the need for regular updates and vigilance against potential exploitation in web browsers.
Affected Version(s)
Chrome 146.0.7680.165