top of page
perceptive_background_267k.jpg

Use after free in Compositing in Google Chrome prior to 146.0.7680.178 allowed a remote attacker who had compromised the renderer process to potentially perform…

Published:

31 March 2026 at 22:00:00

Alert date:

1 April 2026 at 15:04:53

Source:

nvd.nist.gov

Click to open the original link from this advisory

Web Technologies

A use-after-free vulnerability in Google Chrome's Compositing component affects versions prior to 146.0.7680.178. The vulnerability allows remote attackers who have already compromised the renderer process to potentially escape the sandbox through a specially crafted HTML page. This represents a high-severity security issue that could enable privilege escalation attacks. The vulnerability requires prior renderer compromise but can lead to full sandbox escape. Google has addressed this issue in Chrome version 146.0.7680.178 and later.

Technical details

Mitigation steps:

Affected products:

Google Chrome

Related links:

Related CVE's:

Related threat actors:

IOC's:

This article was created with the assistance of AI technology by Perceptive.

© 2025 by Perceptive Security. All rights reserved.

email: info@perceptivesecurity.com

Disclaimer: Deze website toont informatie afkomstig van externe bronnen. Perceptive aanvaardt geen verantwoordelijkheid voor de inhoud, juistheid of volledigheid van deze informatie.

bottom of page