


Perceptive Security
SOC/SIEM Consultancy

Inappropriate implementation in V8 in Google Chrome prior to 144.0.7559.59 allowed a remote attacker to perform an out of bounds memory read via a crafted HTML …
Published:
19 januari 2026 om 23:00:00
Alert date:
20 januari 2026 om 16:03:12
Source:
nvd.nist.gov
Web Technologies
CVE-2026-0902 affects Google Chrome versions prior to 144.0.7559.59, involving an inappropriate implementation in the V8 JavaScript engine. The vulnerability allows remote attackers to perform out of bounds memory reads through specially crafted HTML pages. This represents a medium severity security issue in Chrome's V8 engine that could potentially be exploited by malicious websites. The vulnerability has been addressed in Chrome version 144.0.7559.59 and later. Users should update their Chrome browsers to mitigate this security risk.
Technical details
Mitigation steps:
Affected products:
Google Chrome
V8 JavaScript Engine
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2026-0902
https://chromereleases.googleblog.com/2026/01/stable-channel-update-for-desktop_13.html
https://issues.chromium.org/issues/469143679
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
