Out of Bounds Read Vulnerability in Google Chrome GPU
CVE-2026-9121

8.8HIGH

Key Information:

Vendor

Google

Status
Vendor
CVE Published:
20 May 2026

What is CVE-2026-9121?

An out of bounds read vulnerability exists in the GPU component of Google Chrome versions prior to 148.0.7778.179. This flaw allows remote attackers to potentially exploit heap corruption by tricking users into visiting a specially crafted HTML page. Exploiting this vulnerability could lead to unintended information disclosure or system instability, emphasizing the need for prompt updates to the latest version of Google Chrome.

Affected Version(s)

Chrome 148.0.7778.179

References

CVSS V3.1

Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.