Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-19162

Опубликовано: 06 авг. 2026
Источник: redhat
CVSS3: 8.8
EPSS Низкий

Описание

Out of bounds write in V8 in Google Chrome prior to 151.0.7922.109 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)

A flaw was found in V8, the JavaScript engine used in Google Chrome. This out-of-bounds write vulnerability allows a remote attacker to execute arbitrary code within the browser's sandbox environment. Exploitation occurs when a user visits a specially crafted HTML page. This could lead to unauthorized operations on the affected system.

Отчет

This is an Important flaw in Chromium's V8 JavaScript engine that could allow a remote attacker to execute arbitrary code. The vulnerability is triggered when a user visits a specially crafted HTML page, making user interaction a prerequisite for exploitation. This could lead to unauthorized operations within the browser's sandbox.

Дополнительная информация

Статус:

Important
Дефект:
CWE-787
https://bugzilla.redhat.com/show_bug.cgi?id=2512264chromium-browser: Chromium: Arbitrary code execution via out-of-bounds write in V8.

EPSS

Процентиль: 28%
0.00353
Низкий

8.8 High

CVSS3

Связанные уязвимости

CVSS3: 8.8
ubuntu
10 дней назад

Out of bounds write in V8 in Google Chrome prior to 151.0.7922.109 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)

CVSS3: 8.8
nvd
10 дней назад

Out of bounds write in V8 in Google Chrome prior to 151.0.7922.109 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)

msrc
5 дней назад

CVE-2026-19162 Out of bounds write in V8

CVSS3: 8.8
debian
10 дней назад

Out of bounds write in V8 in Google Chrome prior to 151.0.7922.109 all ...

CVSS3: 8.8
github
10 дней назад

Out of bounds write in V8 in Google Chrome prior to 151.0.7922.109 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)

EPSS

Процентиль: 28%
0.00353
Низкий

8.8 High

CVSS3