Monitor vulnerabilities like this one.
Sign up free to get alerted when software you use is affected.
9.6
CVE-2026-85042: Google Chrome <152.0.7977.82 may run malicious code
CVE-2026-85042 · published today
Summary
Versions of Google Chrome older than 152.0.7977.82 can be tricked by a specially crafted web page to execute code on the computer, bypassing Chrome’s protection. This could let an attacker take control of the system or steal data. Update Chrome to the latest version as soon as possible.
What to do
- Update google chrome to version 152.0.7977.82 or later.
Affected software
| Vendor | Product | Affected versions |
|---|---|---|
| chrome | < 152.0.7977.82 |
Original advisory text
Use after free in DevTools in Google Chrome prior to 152.0.7977.82 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)
Use after free in DevTools in Google Chrome prior to 152.0.7977.82 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)
Severity
9.6
Critical
Type
CWE-416Use After Free
Timeline
Published3 Sep 2026
Updated3 Sep 2026
First seen3 Sep 2026
Monitor software like this
Free during beta