PT-2026-31483 · Google · Google Chrome
Pjwhatforlunch
·
Published
2026-04-07
·
Updated
2026-06-15
·
CVE-2026-5865
CVSS v2.0
10
High
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Google Chrome versions prior to 147.0.7727.55
Description
A type confusion issue exists in the V8 JavaScript engine. This flaw allows a remote attacker to execute arbitrary code inside a sandbox by inducing the victim to open a specially crafted HTML page. The issue is caused by an omitted write barrier, which can lead to renderer memory read/write capabilities and potential remote code execution.
Recommendations
Update to version 147.0.7727.55 or later.
Exploit
Fix
DoS
RCE
Type Confusion
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Google Chrome