← Back to CVE search

CVE-2026-10890

Google Chrome

Description

Use after free in Cast in Google Chrome prior to 149.0.7827.53 allowed an attacker on the local network segment to potentially exploit heap corruption via malicious network traffic. (Chromium security severity: Critical)

CVSS 8.8EPSS 0.183%Risk 0.89
View source
Published
2026-06-04 23:16:50
Affected versions
<149.0.7827.53
Type
Web application
Vector
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Operating systems
Windows; MacOS; Linux