Use after free in WebGPU in Google Chrome prior to 146.0.7680.165 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
Subscriptions
No data.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Tue, 24 Mar 2026 02:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Use after free in WebGPU in Google Chrome prior to 146.0.7680.165 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High) | |
| Weaknesses | CWE-416 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Chrome
Published:
Updated: 2026-03-24T00:58:45.149Z
Reserved: 2026-03-23T21:08:18.347Z
Link: CVE-2026-4678
Updated: 2026-03-24T00:51:57.343Z
Status : Received
Published: 2026-03-24T01:17:03.477
Modified: 2026-03-24T02:16:06.663
Link: CVE-2026-4678
No data.
OpenCVE Enrichment
No data.
Weaknesses