SEPTEMBER 18, 2026
Live Feed
Back to database
Case File

CVE-2026-84350

HIGH · CVSS 8.8 EPSS 0.22%

Source: NVD + CISA KEV + EPSS · Published 2026-09-02 · Last synced 2026-09-18

CyberRota Analysis

AI-Generated

A use-after-free vulnerability in the TabStrip component of Google Chrome prior to version 152.0.7977.75 allows remote attackers to execute arbitrary code outside the sandbox through social engineering techniques that require user interaction. While the Chromium security team has classified the severity as low, organizations using affected versions of Chrome should prioritize updates to mitigate potential exploitation risks. Users and administrators should ensure their browsers are updated to the latest version to protect against this vulnerability.

CVE
CVE-2026-84350
Severity
HIGH
CVSS
8.8
EPSS
0.22%
Chrome

Original NVD Description

Use after free in TabStrip in Google Chrome prior to 152.0.7977.75 allowed a remote attacker leveraging social engineering to execute arbitrary code outside the sandbox via UI Interaction. (Chromium security severity: Low)

Related CVEs

Other vulnerabilities affecting the same vendor(s)