


Perceptive Security
SOC/SIEM Consultancy

Use after free in Views in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to potentially perform a sand…
Published:
29 July 2026 at 22:00:00
Alert date:
30 July 2026 at 20:07:35
Source:
nvd.nist.gov
Web Technologies, Zero-Day Vulnerabilities
CVE-2026-17670 is a high-severity use-after-free vulnerability in the Views component of Google Chrome. It affects versions prior to 151.0.7922.72 and allows a remote attacker who has already compromised the renderer process to potentially escape the browser sandbox. Exploitation requires delivering a crafted HTML page to the victim. The vulnerability is classified as High severity by the Chromium security team. A fix has been released in Chrome stable channel version 151.0.7922.72. This type of vulnerability is particularly dangerous as sandbox escapes can lead to full system compromise. The issue is tracked under Chromium bug tracker issue 513228974. Users are advised to update their Chrome browser immediately to the patched version.
Technical details
Mitigation steps:
Affected products:
Google Chrome prior to 151.0.7922.72
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2026-17670
https://chromereleases.googleblog.com/2026/07/stable-channel-update-for-desktop_0887107924.html
https://issues.chromium.org/issues/513228974
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
