Skip to content
GoogleCVE-2026-102316

Google Chrome: use after free

Critical9.6CVE-2026-102316 · Published Sep 29, 2026 · updated Sep 30, 2026

Use after free in Views in Google Chrome prior to 154.0.8037.92 allowed a remote attacker leveraging social engineering to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)

Google advisory

Affected versions

PackageAffectedFixed in
Chrome
Product
>= 154.0.8037.92, < 154.0.8037.92154.0.8037.92
Details and references

More Google advisories

All Google
Advisory
Google Chrome: improper authorization
High7.5Sep 29
Google Chrome: type confusion
High8.8Sep 29
Google Chrome: cross-site scripting
Medium6.1Sep 29
Google Chrome: improper authorization
Medium6.5Sep 29
Google Chrome: buffer overflow
Critical9.6Sep 29
Google Chrome: out-of-bounds read
Medium4.7Sep 29

Critical advisories by email

Wednesdays: the week’s critical and high advisories in the AI and data stack, with the fixed versions. Only in weeks that have some.

Double opt-in. Unsubscribe any time.