CVE-2026-7343 - Vulnerability Analysis
CriticalCVSS: 9.8Last Updated: April 29, 2026
Google Chrome - Use After Free
Overview
Google Chrome < 147.0.7727.138 on Windows contains a use after free vulnerability in Views, letting remote attackers who compromised the renderer process potentially perform a sandbox escape via crafted HTML, exploit requires compromised renderer process.
Severity & Score
Impact
Attackers with renderer process access can escape sandbox, potentially leading to full system compromise.
Mitigation
Update to version 147.0.7727.138 or later.
References
Social Media Activity(1 post)
š CVE-2026-7343 - High (7.5) Use after free in Views in Google Chrome on Windows prior to 147.0.7727.138 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Critical) š https://www.thehackerwire.com/vulnerability/CVE-2026-7343/ #CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
View original postRelated Resources
Details
- CVE ID
- CVE-2026-7343
- Severity
- Critical
- CVSS Score
- 9.8
- Type
- use_after_free
- Status
- new
- EPSS
- 6.8%
- Social Posts
- 1
CWE
- CWE-416
CVSS Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H