CVE-2026-19172: Use After Free
Use after free in Views in Google Chrome prior to 151.0.7922.109 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Critical)
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-19172?
CVE-2026-19172 has a critical severity rating due to its potential for sandbox escape via a crafted HTML page.
How do I fix CVE-2026-19172?
To fix CVE-2026-19172, update Google Chrome to version 151.0.7922.109 or later.
What type of vulnerability is CVE-2026-19172?
CVE-2026-19172 is classified as a Use After Free vulnerability in the Views component of Google Chrome.
Who is affected by CVE-2026-19172?
Any user running an affected version of Google Chrome prior to 151.0.7922.109 is at risk from CVE-2026-19172.
What could an attacker achieve with CVE-2026-19172?
An attacker exploiting CVE-2026-19172 could potentially escape the sandbox and run arbitrary code in the context of the user.