CVE-2026-84333: Use After Free
Published Sep 1, 2026
·Updated
Use after free in Dawn in Google Chrome on on Android prior to 152.0.7977.75 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)
Affected Software
1 affected component
Google Dawn<152.0.7977.75
Event History
Sep 1, 2026
CVE Published
via MITRE·11:42 PM
Data Sourced
via MITRE·11:42 PM
DescriptionWeakness
Frequently Asked Questions
1
Which deployments are affected?
The issue affects Google Chrome on Android before version 152.0.7977.75. The provided data does not identify affected desktop Chrome versions or other Dawn consumers.
2
What must an attacker do to exploit this issue?
A remote attacker would need to cause the target to process a crafted HTML page. Successful exploitation can result in arbitrary code execution outside the Chrome sandbox.
3
How can I determine whether a device needs remediation?
Check the installed Google Chrome version on Android. Versions earlier than 152.0.7977.75 are affected according to the provided data.