top of page
perceptive_background_267k.jpg

Use after free in ANGLE in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chro…

Published:

30 July 2026 at 00:00:00

Alert date:

30 July 2026 at 23:05:50

Source:

nvd.nist.gov

Click to open the original link from this advisory

Web Technologies, Zero-Day Vulnerabilities

CVE-2026-17718 is a high-severity use-after-free vulnerability in ANGLE, the graphics abstraction layer used by Google Chrome. The flaw exists in Chrome versions prior to 151.0.7922.72 and allows a remote attacker to potentially escape the browser sandbox by convincing a user to visit a specially crafted HTML page. The vulnerability was rated High severity by the Chromium security team. Google has addressed the issue in the stable channel update released for desktop. ANGLE (Almost Native Graphics Layer Engine) is a critical component responsible for translating OpenGL ES calls to platform-native graphics APIs, making vulnerabilities in it particularly impactful. Sandbox escapes of this nature can lead to full system compromise if chained with additional exploits. Users are advised to update Google Chrome to version 151.0.7922.72 or later immediately.

Technical details

Mitigation steps:

Affected products:

Google Chrome
ANGLE

Related links:

Related CVE's:

Related threat actors:

IOC's:

This article was created with the assistance of AI technology by Perceptive.

© 2025 by Perceptive Security. All rights reserved.

email: info@perceptivesecurity.com

Disclaimer: Deze website toont informatie afkomstig van externe bronnen. Perceptive aanvaardt geen verantwoordelijkheid voor de inhoud, juistheid of volledigheid van deze informatie.

bottom of page