PT-2026-31477 · Google · Google Chrome

Published

2026-04-07

·

Updated

2026-04-12

·

CVE-2026-5859

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Google Chrome versions prior to 147.0.7727.55
Description An integer overflow issue exists in the WebML component of Google Chrome. A crafted HTML page can trigger a heap corruption, potentially leading to remote code execution. The vulnerability is due to malformed WebML inputs causing an integer overflow.
Recommendations Update Google Chrome to version 147.0.7727.55 or later.

Fix

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-04885
CVE-2026-5859
OPENSUSE-SU-2026:10530-1
OPENSUSE-SU-2026:20575-1

Affected Products

Google Chrome