Use after free in Extensions in Google Chrome prior to 146.0.7680.153 allowed an attacker who convinced a user to install a malicious extension to potentially exploit heap corruption via a crafted Chrome Extension. (Chromium security severity: High)
Subscriptions
No data.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Fri, 20 Mar 2026 02:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Use after free in Extensions in Google Chrome prior to 146.0.7680.153 allowed an attacker who convinced a user to install a malicious extension to potentially exploit heap corruption via a crafted Chrome Extension. (Chromium security severity: High) | |
| Weaknesses | CWE-416 | |
| References |
|
Status: PUBLISHED
Assigner: Chrome
Published:
Updated: 2026-03-20T01:34:55.397Z
Reserved: 2026-03-19T20:23:53.653Z
Link: CVE-2026-4458
No data.
Status : Received
Published: 2026-03-20T02:16:39.060
Modified: 2026-03-20T02:16:39.060
Link: CVE-2026-4458
No data.
OpenCVE Enrichment
No data.
Weaknesses