Monitor vulnerabilities like this one.
Sign up free to get alerted when software you use is affected.
9.6
CVE-2026-19171: Google Chrome on Windows: Malicious HTML can escape security
CVE-2026-19171
CVE-2026-19171
Summary
A security flaw in older versions of Google Chrome on Windows allows a hacker to create a malicious webpage that could break through the browser's security features. This could potentially allow the hacker to access sensitive information on your computer. To fix this issue, update your Google Chrome browser to the latest version.
What to do
No fix is available yet. Check with your software vendor for updates.
Affected software
| Vendor | Product | Affected versions |
|---|---|---|
| chrome | < 151.0.7922.109 |
Original title
Use after free in Media in Google Chrome on Windows prior to 151.0.7922.109 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: H...
Original description
Use after free in Media in Google Chrome on Windows prior to 151.0.7922.109 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
Vulnerability type
CWE-416
Use After Free
Published: 6 Aug 2026 · Updated: 7 Aug 2026 · First seen: 6 Aug 2026