Description
Use after free in Glic in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
Published: 2026-06-30
Score: 8.3 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

This vulnerability is a use‑after‑free flaw in the Glic component of Google Chrome that can allow an attacker who has first compromised the renderer process to potentially escape the sandbox via a crafted HTML page. The flaw permits code paths that bypass the browser’s sandbox boundaries, enabling the attacker to gain elevated privileges relative to the renderer. The weakness is identified as CWE‑416 and is classified as high severity by Chromium, owing to the potential privilege escalation it provides. No claim is made regarding arbitrary code execution beyond this.

Affected Systems

Users Google Chrome versions earlier than 150.0.7871.47 are affected. The problem exists in stable channel releases before that revision. Anyone who visits an infected or malicious web page in those versions is at risk until the issue is patched.

Risk and Exploitability

The EPSS score of less than 1% indicates a low probability that this vulnerability is being actively exploited in the wild at present. However, the CVSS score of 8.3 reflects a high severity risk if the flaw is leveraged. The vulnerability requires a prior compromise of the renderer process, such as through a separate vulnerability, before the use‑after‑free can lead to a sandbox escape. Once the renderer is compromised, an attacker can deliver a crafted HTML page that triggers the use‑after‑free in Glic, bypassing sandbox boundaries and elevating privileges. The absence of a listing in the CISA KEV catalog means no extensive, publicly documented exploitation has been reported, but the high CVSS and the need for prior renderer compromise still represent a significant security concern.

Generated by OpenCVE AI on August 2, 2026 at 00:59 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Update Google Chrome to the latest stable release (150.0.7871.47 or newer).
  • If an immediate update is not possible, enable Chrome’s Site Isolation feature to isolate renderer processes and limit privilege escalation until a patch is applied.
  • Apply enterprise policies that enforce strict sandboxing for all Chrome processes and consider disabling third‑party renderer extensions that could be used to load untrusted content.

Generated by OpenCVE AI on August 2, 2026 at 00:59 UTC.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
Debian DLA Debian DLA DLA-4672-1 chromium security update
Debian DSA Debian DSA DSA-6378-1 chromium security update
History

Sun, 02 Aug 2026 01:15:00 +0000

Type Values Removed Values Added
Title Chrome Glic Use‑After‑Free Could Enable Sandbox Escape

Wed, 29 Jul 2026 23:15:00 +0000

Type Values Removed Values Added
Title Chrome Glic Use‑After‑Free Could Enable Sandbox Escape

Tue, 21 Jul 2026 17:45:00 +0000

Type Values Removed Values Added
Title Use‑After‑Free in Chrome Glic Leads to Sandbox Escape

Fri, 17 Jul 2026 15:15:00 +0000

Type Values Removed Values Added
Title Use‑After‑Free in Chrome Glic Leads to Sandbox Escape

Thu, 16 Jul 2026 13:00:00 +0000

Type Values Removed Values Added
Title Use‑After‑Free in Chrome Glic Component Enables Potential Sandbox Escape

Tue, 14 Jul 2026 12:15:00 +0000

Type Values Removed Values Added
Title Use‑After‑Free in Chrome Glic Component Enables Potential Sandbox Escape

Sat, 11 Jul 2026 17:30:00 +0000

Type Values Removed Values Added
Title Use‑After‑Free in Glic Enables Potential Sandbox Escape in Google Chrome

Fri, 10 Jul 2026 18:45:00 +0000

Type Values Removed Values Added
Title Use‑After‑Free in Glic Enables Potential Sandbox Escape in Google Chrome

Thu, 09 Jul 2026 22:15:00 +0000

Type Values Removed Values Added
Title Use-After-Free Enabling Sandbox Escape in Chrome Glic

Thu, 09 Jul 2026 08:30:00 +0000

Type Values Removed Values Added
Title Use-After-Free Enabling Sandbox Escape in Chrome Glic

Wed, 08 Jul 2026 20:30:00 +0000

Type Values Removed Values Added
Title Use‑After‑Free in Glic Enables Potential Sandbox Escape

Tue, 07 Jul 2026 22:15:00 +0000

Type Values Removed Values Added
Title Use‑After‑Free in Glic Enables Potential Sandbox Escape

Tue, 07 Jul 2026 05:15:00 +0000

Type Values Removed Values Added
Title Use After Free in Glic Component Enables Sandbox Escape in Google Chrome

Mon, 06 Jul 2026 17:00:00 +0000

Type Values Removed Values Added
Title Use After Free in Glic Component Enables Sandbox Escape in Google Chrome

Sun, 05 Jul 2026 15:30:00 +0000

Type Values Removed Values Added
Title Use‑after‑Free Exploit in Glic Component Enables Sandbox Escape in Google Chrome

Sun, 05 Jul 2026 07:45:00 +0000

Type Values Removed Values Added
Title Use‑after‑Free Exploit in Glic Component Enables Sandbox Escape in Google Chrome

Sat, 04 Jul 2026 23:45:00 +0000

Type Values Removed Values Added
Title Use‑After‑Free in Glic Allows Potential Sandbox Escape in Google Chrome

Sat, 04 Jul 2026 08:15:00 +0000

Type Values Removed Values Added
Title Use‑After‑Free in Glic Allows Potential Sandbox Escape in Google Chrome

Sat, 04 Jul 2026 00:30:00 +0000

Type Values Removed Values Added
Title Use‑After‑Free in Glic Enabling Sandbox Escape in Chrome

Fri, 03 Jul 2026 06:00:00 +0000

Type Values Removed Values Added
Title Use‑After‑Free in Glic Enabling Sandbox Escape in Chrome

Thu, 02 Jul 2026 20:30:00 +0000

Type Values Removed Values Added
Title Use-After-Free in Chrome Glic Enables Potential Sandbox Escape

Thu, 02 Jul 2026 07:15:00 +0000

Type Values Removed Values Added
Title Use-After-Free in Chrome Glic Enables Potential Sandbox Escape

Thu, 02 Jul 2026 02:45:00 +0000

Type Values Removed Values Added
Title Use‑after‑Free in Chrome Glic Leading to Potential Sandbox Escape

Wed, 01 Jul 2026 16:45:00 +0000

Type Values Removed Values Added
Title Use‑after‑Free in Chrome Glic Leading to Potential Sandbox Escape

Wed, 01 Jul 2026 15:30:00 +0000

Type Values Removed Values Added
Metrics cvssV3_1

{'score': 8.3, 'vector': 'CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Wed, 01 Jul 2026 11:00:00 +0000

Type Values Removed Values Added
Title Use‑After‑Free in Chrome’s Glic Component Allows Sandbox Escape

Wed, 01 Jul 2026 08:30:00 +0000

Type Values Removed Values Added
First Time appeared Google
Google chrome
Vendors & Products Google
Google chrome

Wed, 01 Jul 2026 02:15:00 +0000

Type Values Removed Values Added
Title Use‑After‑Free in Chrome’s Glic Component Allows Sandbox Escape

Tue, 30 Jun 2026 23:15:00 +0000

Type Values Removed Values Added
Description Use after free in Glic in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
Weaknesses CWE-416
References

cve-icon MITRE

Status: PUBLISHED

Assigner: Chrome

Published:

Updated: 2026-07-02T03:56:38.541Z

Reserved: 2026-06-29T23:03:26.475Z

Link: CVE-2026-13823

cve-icon Vulnrichment

Updated: 2026-07-01T15:05:48.489Z

cve-icon NVD

No data.

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-02T01:00:05Z

Weaknesses