Google · Google Chrome · CVE-2026-8558
**Name of the Vulnerable Software and Affected Versions**
Google Chrome versions prior to 148.0.7778.168
**Description**
An out-of-bounds write issue exists in the Fonts component, which occurs when the font rendering engine mishandles memory operations by writing data past an allocated memory buffer. This flaw allows a remote attacker to execute arbitrary code within the browser's sandbox by enticing a user to visit a specially crafted HTML page.
**Recommendations**
Update Google Chrome to version 148.0.7778.168 or later.