Use after free vulnerability in Google Chrome allows remote code execution
CVE-2026-91718

Currently unrated

Key Information:

Vendor

Google

Status
Vendor
CVE Published:
15 September 2026

What is CVE-2026-91718?

A use after free vulnerability has been identified in the core of Google Chrome, which can be exploited by a remote attacker to execute arbitrary code outside of the designated sandbox environment. This can occur when a crafted HTML page is used, allowing the attacker to manipulate memory in a way that can breach security protocols. It is crucial for users to update to the latest version of Google Chrome to mitigate this risk effectively. For more detailed information, refer to the official release notes and relevant discussions.

Affected Version(s)

Chrome 153.0.8010.47

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.