← Terug naar overzicht

A critical use-after-free vulnerability exists in WebGL in Google Chrome for Android prior to version 152.0.7977.75. The flaw allows a remote attacker to execute arbitrary code outside the sandbox by luring a victim to a crafted HTML page. The vulnerability is rated Critical by the Chromium security team. Successful exploitation could lead to full compromise of the affected device beyond the browser sandbox. The issue has been addressed in Chrome stable channel update 152.0.7977.75. Users on Android are strongly advised to update immediately. The vulnerability is tracked as CVE-2026-84352 and details are published on NVD.

Affected products

  • Google Chrome for Android (prior to 152.0.7977.75)

Related CVE's

  • CVE-2026-84352

Categories

  • Mobile & IoT
  • Web Technologies
  • Zero-Day Vulnerabilities