PT-2026-24883 · Google+1 · Webview+2

Am4Deu$

·

Publicado

2026-02-05

·

Atualizado

2026-05-15

·

CVE-2026-3936

CVSS v2.0

10

Alta

VetorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Google Chrome versions prior to 146.0.7680.71
Description A use-after-free issue exists in the WebView component of Google Chrome on Android. This allows a remote attacker to potentially exploit heap corruption through a specially crafted HTML page. The Chromium security severity is rated as Medium. Exploitation may be possible without user interaction. Successful exploitation could potentially expose session data, credentials, or tokens. Millions of users and applications may be at risk. The vulnerability affects the system, allowing attackers to potentially impact it.
Recommendations Update Google Chrome to version 146.0.7680.71 or later.

Correção

DoS

RCE

Use After Free

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2026-05163
CVE-2026-3936
OPENSUSE-SU-2026:10376-1
OPENSUSE-SU-2026:20372-1

Produtos afetados

Google Chrome
Red Os
Webview