Description
Type Confusion in V8 in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
Published: 2026-06-04
Score: 8.8 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

The CVE documents a type confusion flaw in V8, the JavaScript engine that powers Google Chrome, which allows a remote attacker to launch arbitrary code execution inside the browser’s sandbox via a crafted HTML page. The vulnerability originates from incorrect handling of type casting operations, enabling the attacker to trigger undefined behavior that the engine cannot safely detect. Successful exploitation could compromise the confidentiality, integrity, or availability of the affected system and could be leveraged for further escalated attacks beyond the browser sandbox. This condition reflects CWE-843: Type Confusion.

Affected Systems

Google Chrome browsers with versions older than 149.0.7827.53 on any supported platform are affected. Any user who visits a malicious site that delivers specially constructed HTML content can expose the browser to this flaw until the browser is updated.

Risk and Exploitability

The vulnerability has a CVSS score of 8.8, indicating high severity. No commercial exploit is currently documented and the EPSS score is unavailable, indicating limited exploitation activity. The flaw is not listed in the CISA KEV catalog. An attacker can exploit it remotely by hosting or serving a malicious HTML page; the attack would execute code with the privileges of the sandboxed renderer process. While the exploit is theoretically feasible, the lack of existing exploit code and absence from major exploitation feeds reduce the immediate risk, but the potential for future exploitation remains significant.

Generated by OpenCVE AI on June 5, 2026 at 04:36 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Update Chrome to version 149.0.7827.53 or later using the official update channel.
  • If an immediate update is infeasible, temporarily disable JavaScript or enforce site isolation for untrusted domains via Chrome policies as a mitigative containment.
  • Continuously monitor Chrome security advisories and plan to conduct post‑patch penetration testing to confirm that the type‑confusion path is closed.

Generated by OpenCVE AI on June 5, 2026 at 04:36 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Fri, 05 Jun 2026 15:45:00 +0000

Type Values Removed Values Added
First Time appeared Apple
Apple macos
Linux
Linux linux Kernel
Microsoft
Microsoft windows
CPEs cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:-:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
Vendors & Products Apple
Apple macos
Linux
Linux linux Kernel
Microsoft
Microsoft windows

Fri, 05 Jun 2026 07:15:00 +0000

Type Values Removed Values Added
First Time appeared Google
Google chrome
Vendors & Products Google
Google chrome

Fri, 05 Jun 2026 05:00:00 +0000

Type Values Removed Values Added
Title Type Confusion in V8 Enables Remote Code Execution via Crafted HTML Page

Fri, 05 Jun 2026 01:30:00 +0000

Type Values Removed Values Added
Weaknesses CWE-843
Metrics cvssV3_1

{'score': 8.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Thu, 04 Jun 2026 23:15:00 +0000

Type Values Removed Values Added
Description Type Confusion in V8 in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
References

cve-icon MITRE

Status: PUBLISHED

Assigner: Chrome

Published:

Updated: 2026-06-05T00:38:16.195Z

Reserved: 2026-06-04T17:06:10.070Z

Link: CVE-2026-10935

cve-icon Vulnrichment

Updated: 2026-06-05T00:38:10.977Z

cve-icon NVD

Status : Analyzed

Published: 2026-06-04T23:16:56.010

Modified: 2026-06-05T15:35:24.310

Link: CVE-2026-10935

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-06-05T07:00:12Z

Weaknesses