HarborGuard / CVE
Back to search
HIGHCVE-2026-5287Published Modified CNA Chrome

CVE-2026-5287: Use after free in PDF in Google Chrome prior to 146

Use after free in PDF in Google Chrome prior to 146.0.7680.178 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted PDF file. (Chromium security severity: High)

Metrics

CVSS v3.1
8.8
Severity
HIGH
Fixed in
146.0.7680.178
Affected Products
1

Fix available

146.0.7680.178
Affected packages
  • Google / Chrome
    < 146.0.7680.178 (from 146.0.7680.178)
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H