AUGUST 15, 2026
Live Feed
Back to database
Case File

CVE-2026-19149

CRITICAL · CVSS 9.6 EPSS 0.40%

Source: NVD + CISA KEV + EPSS · Published 2026-08-06 · Last synced 2026-08-15

CyberRota Analysis

AI-Generated

A use-after-free vulnerability in the Aura component of Google Chrome on Linux prior to version 151.0.7922.109 allows remote attackers to potentially execute a sandbox escape through a specially crafted HTML page. This could lead to unauthorized access to system resources and sensitive data. Users and administrators of affected Linux systems running Chrome should prioritize updating to the latest version to mitigate this critical risk.

CVE
CVE-2026-19149
Severity
CRITICAL
CVSS
9.6
EPSS
0.40%
Linux Chrome

Original NVD Description

Use after free in Aura in Google Chrome on Linux prior to 151.0.7922.109 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Critical)

Related CVEs

Other vulnerabilities affecting the same vendor(s)