Out of Bounds Write Vulnerability in Google Chrome Renderer Process
CVE-2026-9974

8.3HIGH

Key Information:

Vendor

Google

Status
Vendor
CVE Published:
28 May 2026

What is CVE-2026-9974?

A vulnerability exists in the Google Chrome renderer process that allows for an out of bounds write condition. This issue can be exploited by remote attackers who can trick users into loading a specially crafted HTML page, potentially leading to a sandbox escape. Affected versions of Google Chrome prior to a specific update are at risk, highlighting the importance of maintaining up-to-date browser software to mitigate such risks.

Affected Version(s)

Chrome 148.0.7778.216

References

CVSS V3.1

Score:
8.3
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.