Description
Use after free in Skia in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Critical)
Published: 2026-05-28
Score: 8.3 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

The vulnerability is a use‑after‑free in the Skia graphics library used by Google Chrome. When a renderer process is compromised, a crafted HTML page can trigger the flaw, potentially allowing the attacker to escape the browser sandbox and execute arbitrary code on the host. The flaw is rated critical by Chromium security, indicating a high likelihood of exploitation if the attacker controls the renderer. The issue is associated with both CWE-416 and CWE-825.

Affected Systems

Affected systems are all installations of Google Chrome running any version earlier than 148.0.7778.216. The issue resides in the renderer component that supports rendering images and graphics via Skia; thus any platform that runs Chrome with that renderer is vulnerable. The weakness falls under both CWE‑416 and CWE‑825.

Risk and Exploitability

The CVSS score of 8.3 indicates high severity. EPSS score of 0.00035 (indicating very low exploitation probability) and the vulnerability is not listed in CISA's KEV catalog. Exploitation would likely involve an attacker hosting malicious content that a user opens in Chrome; the crafted page must be delivered in a context where the renderer process is already compromised. Given the lack of known public exploits, the threat level remains high but unproven externally. This use‑after‑free is classified as both CWE‑416 and CWE‑825.

Generated by OpenCVE AI on May 29, 2026 at 16:52 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Update Google Chrome to version 148.0.7778.216 or later to apply the Skia use‑after‑free fix.
  • Ensure Chrome stays on automatic updates and install all pending security patches promptly.
  • Verify that the Chrome sandbox is enabled and no privileged extensions or policies disable it.

Generated by OpenCVE AI on May 29, 2026 at 16:52 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Fri, 29 May 2026 15:30:00 +0000

Type Values Removed Values Added
Metrics cvssV3_1

{'score': 8.8, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}

cvssV3_1

{'score': 8.3, 'vector': 'CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H'}


Fri, 29 May 2026 12:15:00 +0000

Type Values Removed Values Added
Title Use‑After‑Free in Skia Enables Potential Sandbox Escape in Google Chrome chromium-browser: Use after free in Skia
Weaknesses CWE-825
References
Metrics threat_severity

None

cvssV3_1

{'score': 8.8, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H'}

threat_severity

Critical


Fri, 29 May 2026 00:00:00 +0000

Type Values Removed Values Added
Title Use‑After‑Free in Skia Enables Potential Sandbox Escape in Google Chrome
First Time appeared Google
Google chrome
Vendors & Products Google
Google chrome

Thu, 28 May 2026 22:45:00 +0000

Type Values Removed Values Added
Description Use after free in Skia in Google Chrome prior to 148.0.7778.216 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Critical)
Weaknesses CWE-416
References

cve-icon MITRE

Status: PUBLISHED

Assigner: Chrome

Published:

Updated: 2026-05-30T03:56:45.798Z

Reserved: 2026-05-28T17:24:45.312Z

Link: CVE-2026-9893

cve-icon Vulnrichment

Updated: 2026-05-29T15:05:00.204Z

cve-icon NVD

Status : Undergoing Analysis

Published: 2026-05-28T23:16:47.280

Modified: 2026-05-29T16:16:35.743

Link: CVE-2026-9893

cve-icon Redhat

Severity : Critical

Publid Date: 2026-05-27T00:00:00Z

Links: CVE-2026-9893 - Bugzilla

cve-icon OpenCVE Enrichment

Updated: 2026-05-29T17:00:04Z

Weaknesses