Executive brief
A vulnerability exists in Google Chrome's Headless mode, which is often used for automated web testing and server-side rendering. An attacker could use a specially crafted webpage to break out of the browser's security sandbox. If successful, this could allow the attacker to gain unauthorized access to the underlying operating system or sensitive user data.
Technical details
A use-after-free (UAF) vulnerability exists in the Headless component of Google Chrome. The flaw is triggered when the browser incorrectly manages memory during the processing of crafted HTML content. A remote attacker who has already compromised the renderer process can exploit this condition to achieve a sandbox escape, potentially leading to arbitrary code execution on the host system. The vulnerability is addressed in Google Chrome version 150.0.7871.47 and later.
Affected products
- Google Chrome prior to 150.0.7871.47
Timeline
- 2026-05-16: other: Reported to Google
- 2026-06-30: patched: Fixed in version 150.0.7871.47
- 2026-06-30: disclosed: Public advisory published