PT-2026-27281 · Google+1 · Google Chrome+1
Shaheen Fazim
·
Published
2026-03-12
·
Updated
2026-05-20
·
CVE-2026-4680
CVSS v2.0
10
High
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Google Chrome versions prior to 146.0.7680.165
Description
A use-after-free issue in the FedCM feature of Google Chrome could allow a remote attacker to execute arbitrary code within a sandbox through a specially crafted HTML page.
Recommendations
Update Google Chrome to version 146.0.7680.165 or later.
Fix
RCE
Use After Free
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Google Chrome
Red Os