Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.

Google Chrome: Malicious Webpage Can Leak Sensitive Data

CVE-2026-5292
Summary

Malicious websites can potentially steal sensitive data from your Google Chrome browser if you visit a specially crafted webpage. This is a medium-severity issue that affects older versions of Google Chrome. To stay safe, update to the latest version of Chrome.

Original title
Out of bounds read in WebCodecs in Google Chrome prior to 146.0.7680.178 allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page. (Chromium security severity: Medium)
Original description
Out of bounds read in WebCodecs in Google Chrome prior to 146.0.7680.178 allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page. (Chromium security severity: Medium)
Vulnerability type
CWE-125 Out-of-bounds Read
Published: 1 Apr 2026 · Updated: 1 Apr 2026 · First seen: 1 Apr 2026