← Terug naar overzicht

CVE-2026-84353 is a critical use-after-free vulnerability in the Shared Tab Groups feature of Google Chrome on Android. Versions prior to 152.0.7977.75 are affected. A remote attacker can exploit this vulnerability through social engineering, tricking a user into visiting a crafted HTML page. Successful exploitation allows arbitrary code execution outside the browser sandbox, representing a full sandbox escape. The vulnerability has been assigned a Critical severity rating by the Chromium security team. Users are urged to update to Chrome 152.0.7977.75 or later on Android immediately.

Affected products

  • Google Chrome on Android (prior to 152.0.7977.75)

Related CVE's

  • CVE-2026-84353

Categories

  • Mobile & IoT
  • Web Technologies
  • Zero-Day Vulnerabilities