CVE-2026-5284: Use after free in Dawn
Chromium: CVE-2026-5284 Use after free in Dawn
Other sources
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
— Microsoft
Use after free in Dawn in Google Chrome prior to 146.0.7680.178 allowed a remote attacker who had compromised the renderer process to execute arbitrary code via a crafted HTML page. (Chromium security severity: High)
— NVD
Credit
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2026-5284?
CVE-2026-5284 has a severity rating of High due to its potential to allow remote attackers to execute arbitrary code.
How do I fix CVE-2026-5284?
To fix CVE-2026-5284, upgrade Google Chrome to version 146.0.7680.178 or later.
Which versions of Google Chrome are affected by CVE-2026-5284?
Google Chrome versions prior to 146.0.7680.178 are affected by CVE-2026-5284.
What is a use after free vulnerability in the context of CVE-2026-5284?
A use after free vulnerability like CVE-2026-5284 occurs when memory that has been freed is reused, potentially leading to arbitrary code execution.
What are the potential consequences of CVE-2026-5284 if exploited?
If exploited, CVE-2026-5284 can allow attackers to execute arbitrary code on a victim's system through a malicious HTML page.