Executive brief
A vulnerability in Google Chrome's navigation component could allow a remote attacker to bypass security boundaries. If an attacker has already compromised the browser's rendering process, they could use this flaw to escape the 'sandbox'—the security layer designed to prevent malicious websites from accessing the rest of your computer. This could lead to unauthorized access to local files or the execution of malicious software on the underlying operating system.
Technical details
A use-after-free (UAF) vulnerability exists in the Navigation component of Google Chrome. The flaw is triggered when the browser incorrectly manages memory during page navigation transitions. To exploit this, a remote attacker must first achieve code execution within the sandboxed renderer process (e.g., via a separate V8 or DOM vulnerability). Once the renderer is compromised, the attacker can use a specially crafted HTML page to trigger the UAF in the browser process, potentially leading to a sandbox escape and full system compromise. The issue is resolved in Google Chrome version 151.0.7922.72.
Affected products
- Google Chrome prior to 151.0.7922.72
Timeline
- 2026-04-14: other: Reported to Chromium project
- 2026-07-29: patched: Fixed in stable channel update 151.0.7922.72
- 2026-07-30: disclosed: NVD publication date