Description
Use after free in Glic in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
Published: 2026-06-30
Score: 8.3 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

This vulnerability is a use‑after‑free flaw in the Glic component of Google Chrome that can allow an attacker who has first compromised the renderer process to potentially escape the sandbox via a crafted HTML page. The flaw permits code paths that bypass the browser’s sandbox boundaries, enabling the attacker to gain elevated privileges relative to the renderer. The weakness is identified as CWE‑416 and is classified as high severity by Chromium, owing to the potential privilege escalation it provides. No claim is made regarding arbitrary code execution beyond this sandbox escape, as the CVE does not explicitly state that capability.

Affected Systems

Users Google Chrome versions earlier than 150.0.7871.47 are affected. The problem exists in stable channel releases before that revision. Anyone who visits an infected or malicious web page in those versions is at risk until the issue is patched.

Risk and Exploitability

The EPSS score for this vulnerability is < 1%, and it is not listed in the CISA KEV catalog. Chromium rating, with a CVSS score of 8.3. The likely attack vector is from a malicious HTML page that is rendered in a renderer process that has already been compromised by another vector. The vulnerability requires the renderer process to be exploited first; once this is achieved, the use‑after‑free can lead to a sandbox escape, potentially permitting the attacker to execute further operations with elevated privileges. The reliance on a prior renderer compromise limits the attack surface, but the existence of the flaw still constitutes a serious concern for users who can download or view malicious content.

Generated by OpenCVE AI on July 17, 2026 at 14:56 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Update Google Chrome to the latest stable release (150.0.7871.47 or newer).
  • If an immediate update is not possible, enable Chrome’s Site Isolation feature to isolate renderer processes and limit privilege escalation until a patch is applied.
  • Apply enterprise policies that enforce strict sandboxing for all Chrome processes and consider disabling third‑party renderer extensions that could be used to load untrusted content.

Generated by OpenCVE AI on July 17, 2026 at 14:56 UTC.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
Debian DLA Debian DLA DLA-4672-1 chromium security update
Debian DSA Debian DSA DSA-6378-1 chromium security update
History

Fri, 17 Jul 2026 15:15:00 +0000

Type Values Removed Values Added
Title Use‑After‑Free in Chrome Glic Leads to Sandbox Escape

Thu, 16 Jul 2026 13:00:00 +0000

Type Values Removed Values Added
Title Use‑After‑Free in Chrome Glic Component Enables Potential Sandbox Escape

Tue, 14 Jul 2026 12:15:00 +0000

Type Values Removed Values Added
Title Use‑After‑Free in Chrome Glic Component Enables Potential Sandbox Escape

Sat, 11 Jul 2026 17:30:00 +0000

Type Values Removed Values Added
Title Use‑After‑Free in Glic Enables Potential Sandbox Escape in Google Chrome

Fri, 10 Jul 2026 18:45:00 +0000

Type Values Removed Values Added
Title Use‑After‑Free in Glic Enables Potential Sandbox Escape in Google Chrome

Thu, 09 Jul 2026 22:15:00 +0000

Type Values Removed Values Added
Title Use-After-Free Enabling Sandbox Escape in Chrome Glic

Thu, 09 Jul 2026 08:30:00 +0000

Type Values Removed Values Added
Title Use-After-Free Enabling Sandbox Escape in Chrome Glic

Wed, 08 Jul 2026 20:30:00 +0000

Type Values Removed Values Added
Title Use‑After‑Free in Glic Enables Potential Sandbox Escape

Tue, 07 Jul 2026 22:15:00 +0000

Type Values Removed Values Added
Title Use‑After‑Free in Glic Enables Potential Sandbox Escape

Tue, 07 Jul 2026 05:15:00 +0000

Type Values Removed Values Added
Title Use After Free in Glic Component Enables Sandbox Escape in Google Chrome

Mon, 06 Jul 2026 17:00:00 +0000

Type Values Removed Values Added
Title Use After Free in Glic Component Enables Sandbox Escape in Google Chrome

Sun, 05 Jul 2026 15:30:00 +0000

Type Values Removed Values Added
Title Use‑after‑Free Exploit in Glic Component Enables Sandbox Escape in Google Chrome

Sun, 05 Jul 2026 07:45:00 +0000

Type Values Removed Values Added
Title Use‑after‑Free Exploit in Glic Component Enables Sandbox Escape in Google Chrome

Sat, 04 Jul 2026 23:45:00 +0000

Type Values Removed Values Added
Title Use‑After‑Free in Glic Allows Potential Sandbox Escape in Google Chrome

Sat, 04 Jul 2026 08:15:00 +0000

Type Values Removed Values Added
Title Use‑After‑Free in Glic Allows Potential Sandbox Escape in Google Chrome

Sat, 04 Jul 2026 00:30:00 +0000

Type Values Removed Values Added
Title Use‑After‑Free in Glic Enabling Sandbox Escape in Chrome

Fri, 03 Jul 2026 06:00:00 +0000

Type Values Removed Values Added
Title Use‑After‑Free in Glic Enabling Sandbox Escape in Chrome

Thu, 02 Jul 2026 20:30:00 +0000

Type Values Removed Values Added
Title Use-After-Free in Chrome Glic Enables Potential Sandbox Escape

Thu, 02 Jul 2026 07:15:00 +0000

Type Values Removed Values Added
Title Use-After-Free in Chrome Glic Enables Potential Sandbox Escape

Thu, 02 Jul 2026 02:45:00 +0000

Type Values Removed Values Added
Title Use‑after‑Free in Chrome Glic Leading to Potential Sandbox Escape

Wed, 01 Jul 2026 16:45:00 +0000

Type Values Removed Values Added
Title Use‑after‑Free in Chrome Glic Leading to Potential Sandbox Escape

Wed, 01 Jul 2026 15:30:00 +0000

Type Values Removed Values Added
Metrics cvssV3_1

{'score': 8.3, 'vector': 'CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Wed, 01 Jul 2026 11:00:00 +0000

Type Values Removed Values Added
Title Use‑After‑Free in Chrome’s Glic Component Allows Sandbox Escape

Wed, 01 Jul 2026 08:30:00 +0000

Type Values Removed Values Added
First Time appeared Google
Google chrome
Vendors & Products Google
Google chrome

Wed, 01 Jul 2026 02:15:00 +0000

Type Values Removed Values Added
Title Use‑After‑Free in Chrome’s Glic Component Allows Sandbox Escape

Tue, 30 Jun 2026 23:15:00 +0000

Type Values Removed Values Added
Description Use after free in Glic in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
Weaknesses CWE-416
References

cve-icon MITRE

Status: PUBLISHED

Assigner: Chrome

Published:

Updated: 2026-07-02T03:56:38.541Z

Reserved: 2026-06-29T23:03:26.475Z

Link: CVE-2026-13823

cve-icon Vulnrichment

Updated: 2026-07-01T15:05:48.489Z

cve-icon NVD

No data.

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-07-17T15:00:10Z

Weaknesses