CVE-2026-76021: Use after free in DOM
Published Aug 2, 2026
·Updated
Use after free in DOM in Google Chrome prior to 151.0.7922.173 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)
Credit
Google BigSleep@@Grape
Affected Software
1 affected componentFixes available
Google Chrome<151.0.7922.173
151.0.7922.173
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 151.0.7922.173
Event History
Aug 2, 2026
CVE Published
12:00 AM
Data Sourced
12:00 AM
SeverityWeaknessAffected Software
Aug 20, 2026
CVE Published
via MITRE·08:51 PM
Data Sourced
via MITRE·08:51 PM
DescriptionWeakness
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
1
Which software is identified as affected?
The available data identifies Google Chrome from Google. It does not provide affected or fixed version numbers.
2
What temporary mitigation is documented if an update cannot be applied immediately?
No temporary mitigation or configuration workaround is provided in the available data.
3
How can I determine whether a system is affected?
The available data does not include affected-version criteria, detection guidance, or indicators of compromise.