Remote Code Execution Risk in Google Chrome Software
CVE-2026-6362

Currently unrated

Key Information:

Vendor

Google

Status
Vendor
CVE Published:
15 April 2026

What is CVE-2026-6362?

A security vulnerability in Google Chrome prior to version 147.0.7727.101 exposes users to potential remote code execution risks. The flaw stems from a use after free error in the Codecs component, which could allow attackers to exploit the browser’s handling of crafted video files. This could lead to out of bounds memory access, enabling unauthorized actions and compromising user security. Updating to the latest version is crucial to mitigate this risk.

Affected Version(s)

Chrome 147.0.7727.101

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.