Description
Use after free in Browser in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Critical)
Published: 2026-06-30
Score: 9.6 Critical
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

A use-after-free flaw in the Chrome renderer allows a dangling pointer to be dereferenced after the memory block has been freed. When triggered by a specially crafted HTML page, this flaw can escape the renderer sandbox and grant the attacker the ability to execute code with system privileges. The weakness is formally identified as CWE-416 and carries a CVSS score of 9.6, indicating critical severity.

Affected Systems

The vulnerability affects Google Chrome versions prior to 150.0.7871.47 on all supported operating systems. Users running those earlier stable releases are exposed if the renderer component contains the unpatched code. The vendor's advisory implies the issue is limited to the stable channel on desktop, but this inference is not directly supported by the payload.

Risk and Exploitability

The EPSS score of < 1% suggests that while exploitation is currently unlikely, the high CVSS rating of 9.6 means serious damage can result if the flaw is exploited. The flaw requires that the attacker already has control over the renderer process, which typically implies a preceding compromise or malicious content. Although it is not listed in CISA's KEV catalog, the combination of critical severity and the potential for remote code execution warrants immediate attention.

Generated by OpenCVE AI on July 21, 2026 at 17:41 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Apply the Chrome update that includes version 150.0.7871.47 or later
  • Restart the browser and any related processes to ensure the updated renderer is in use
  • If an update cannot be applied immediately, configure policy settings to block loading of untrusted or unsandboxed content, and restrict extensions from running privileged code

Generated by OpenCVE AI on July 21, 2026 at 17:41 UTC.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
Debian DLA Debian DLA DLA-4672-1 chromium security update
Debian DSA Debian DSA DSA-6378-1 chromium security update
History

Tue, 21 Jul 2026 18:00:00 +0000

Type Values Removed Values Added
Title Use-After-Free in Chrome Renderer Enables Sandbox Escape

Thu, 16 Jul 2026 00:45:00 +0000

Type Values Removed Values Added
Title Use-After-Free in Chrome Renderer Allows Sandbox Escape

Tue, 14 Jul 2026 21:30:00 +0000

Type Values Removed Values Added
Title Use-After-Free in Chrome Renderer Allows Sandbox Escape

Mon, 13 Jul 2026 16:45:00 +0000

Type Values Removed Values Added
Title Use-After-Free in Chrome Renderer Exposes Potential Sandbox Escape

Sun, 12 Jul 2026 03:30:00 +0000

Type Values Removed Values Added
Title Use-After-Free in Chrome Renderer Exposes Potential Sandbox Escape

Sat, 11 Jul 2026 10:00:00 +0000

Type Values Removed Values Added
Title Use-after-Free in Chrome Renderer Enables Sandbox Escape

Fri, 10 Jul 2026 19:00:00 +0000

Type Values Removed Values Added
Title Use-after-Free in Chrome Renderer Enables Sandbox Escape

Thu, 09 Jul 2026 15:30:00 +0000

Type Values Removed Values Added
Title Use-after-Free in Chrome Renderer Allows Sandbox Escape

Wed, 08 Jul 2026 20:45:00 +0000

Type Values Removed Values Added
Title Use-after-Free in Chrome Renderer Allows Sandbox Escape

Wed, 08 Jul 2026 04:15:00 +0000

Type Values Removed Values Added
Title Use-After-Free in Chrome Renderer Enables Sandbox Escape

Tue, 07 Jul 2026 16:45:00 +0000

Type Values Removed Values Added
Title Use-After-Free in Chrome Renderer Enables Sandbox Escape

Mon, 06 Jul 2026 21:15:00 +0000

Type Values Removed Values Added
Title Use‑After‑Free Leads to Sandbox Escape in Google Chrome Renderer

Mon, 06 Jul 2026 08:15:00 +0000

Type Values Removed Values Added
Title Use‑After‑Free Leads to Sandbox Escape in Google Chrome Renderer

Sun, 05 Jul 2026 20:00:00 +0000

Type Values Removed Values Added
Title Use-After-Free in Chrome Renderer Enables Sandbox Escape

Sun, 05 Jul 2026 07:45:00 +0000

Type Values Removed Values Added
Title Use-After-Free in Chrome Renderer Enables Sandbox Escape

Sun, 05 Jul 2026 00:00:00 +0000

Type Values Removed Values Added
Title Use-after-Free in Chrome Renderer Enables Sandbox Escape

Sat, 04 Jul 2026 16:15:00 +0000

Type Values Removed Values Added
Title Use-after-Free in Chrome Renderer Enables Sandbox Escape

Fri, 03 Jul 2026 06:15:00 +0000

Type Values Removed Values Added
Title Use After Free Vulnerability in Chrome Browser May Enable Sandbox Escape

Thu, 02 Jul 2026 20:30:00 +0000

Type Values Removed Values Added
Title Use After Free Vulnerability in Chrome Browser May Enable Sandbox Escape

Thu, 02 Jul 2026 07:15:00 +0000

Type Values Removed Values Added
Title Use After Free in Chrome Renderer Permits Sandbox Escape

Wed, 01 Jul 2026 18:30:00 +0000

Type Values Removed Values Added
Metrics cvssV3_1

{'score': 9.6, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Wed, 01 Jul 2026 15:00:00 +0000

Type Values Removed Values Added
Title Use After Free in Chrome Renderer Permits Sandbox Escape

Wed, 01 Jul 2026 10:30:00 +0000

Type Values Removed Values Added
First Time appeared Google
Google chrome
Vendors & Products Google
Google chrome

Wed, 01 Jul 2026 08:45:00 +0000

Type Values Removed Values Added
Title Use After Free in Chrome Renderer Enables Sandbox Escape

Wed, 01 Jul 2026 00:45:00 +0000

Type Values Removed Values Added
Title Use After Free in Chrome Renderer Enables Sandbox Escape

Tue, 30 Jun 2026 23:15:00 +0000

Type Values Removed Values Added
Description Use after free in Browser in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Critical)
Weaknesses CWE-416
References

cve-icon MITRE

Status: PUBLISHED

Assigner: Chrome

Published:

Updated: 2026-07-02T03:57:24.216Z

Reserved: 2026-06-29T23:03:16.332Z

Link: CVE-2026-13782

cve-icon Vulnrichment

Updated: 2026-07-01T17:56:52.032Z

cve-icon NVD

No data.

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-07-21T17:45:02Z

Weaknesses