CVE-2026-7357 - Vulnerability Analysis
HighCVSS: 8.8Last Updated: April 29, 2026
Google Chrome - Use After Free
Published: April 28, 2026Updated: April 29, 2026Remote Exploitable
Overview
Google Chrome < 147.0.7727.138 contains a use after free vulnerability in GPU, letting remote attackers who compromised the renderer process exploit heap corruption via crafted HTML pages.
Severity & Score
Severity: High
CVSS Score: 8.8
Impact
Remote attackers can exploit heap corruption to execute arbitrary code or crash the browser, leading to potential full compromise.
Mitigation
Update to version 147.0.7727.138 or later.
References
Related Resources
Details
- CVE ID
- CVE-2026-7357
- Severity
- High
- CVSS Score
- 8.8
- Type
- use_after_free
- Status
- new
CWE
- CWE-416
CVSS Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H