Use After Free Vulnerability in Google Chrome WebMIDI Component
CVE-2026-7350

Currently unrated

Key Information:

Vendor

Google

Status
Vendor
CVE Published:
28 April 2026

What is CVE-2026-7350?

A use after free vulnerability exists in the WebMIDI component of Google Chrome, impacting versions prior to 147.0.7727.138. This flaw may allow a remote attacker to exploit a compromised renderer process, potentially leading to a sandbox escape through a specially crafted HTML page. Users are advised to update to the latest version to mitigate this risk.

Affected Version(s)

Chrome 147.0.7727.138

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.