


Perceptive Security
SOC/SIEM Consultancy

Google Dawn contains an use-after-free vulnerability that could allow a remote attacker who had compromised the renderer process to execute arbitrary code via a…
Published:
1 april 2026 om 00:00:00
Alert date:
1 april 2026 om 20:03:08
Source:
cisa.gov
Web Technologies, Supply Chain & Dependencies
Google Dawn contains a use-after-free vulnerability (CVE-2026-5281) that allows remote attackers who have compromised the renderer process to execute arbitrary code via crafted HTML pages. This vulnerability affects multiple Chromium-based products including Google Chrome, Microsoft Edge, and Opera. The vulnerability impacts an open-source component that could be used by different products, making it a widespread security concern across various browser platforms.
Technical details
Mitigation steps:
Affected products:
Google Dawn
Google Chrome
Microsoft Edge
Opera
Chromium-based browsers
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2026-5281
https://chromereleases.googleblog.com/2026/03/stable-channel-update-for-desktop_31.html
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
