top of page
perceptive_background_267k.jpg

Use after free in Views in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to potentially perform a sand…

Published:

29 July 2026 at 22:00:00

Alert date:

30 July 2026 at 20:07:35

Source:

nvd.nist.gov

Click to open the original link from this advisory

Web Technologies, Zero-Day Vulnerabilities

CVE-2026-17670 is a high-severity use-after-free vulnerability in the Views component of Google Chrome. It affects versions prior to 151.0.7922.72 and allows a remote attacker who has already compromised the renderer process to potentially escape the browser sandbox. Exploitation requires delivering a crafted HTML page to the victim. The vulnerability is classified as High severity by the Chromium security team. A fix has been released in Chrome stable channel version 151.0.7922.72. This type of vulnerability is particularly dangerous as sandbox escapes can lead to full system compromise. The issue is tracked under Chromium bug tracker issue 513228974. Users are advised to update their Chrome browser immediately to the patched version.

Technical details

Mitigation steps:

Affected products:

Google Chrome prior to 151.0.7922.72

Related links:

Related CVE's:

Related threat actors:

IOC's:

This article was created with the assistance of AI technology by Perceptive.

© 2025 by Perceptive Security. All rights reserved.

email: info@perceptivesecurity.com

Disclaimer: Deze website toont informatie afkomstig van externe bronnen. Perceptive aanvaardt geen verantwoordelijkheid voor de inhoud, juistheid of volledigheid van deze informatie.

bottom of page