Google · Google Chrome · CVE-2026-0899
**Name of the Vulnerable Software and Affected Versions**
Google Chrome versions prior to 144.0.7559.59
**Description**
An out-of-bounds memory access issue exists in the V8 JavaScript engine. This flaw is caused by a function literal ID mismatch occurring when the parser fails to pre-allocate the other initializer scope while reparsing an initializer, leading to incorrect ID assignment. A remote attacker can exploit this by using a specially crafted HTML page to cause object corruption, which may lead to arbitrary code execution or a denial of service.
**Recommendations**
Update Google Chrome to version 144.0.7559.59 or later.