CyberRota Analysis
This is a critical severity vulnerability with a CVSS score of 9.6. It affects Chrome. It may be remotely exploitable.
CVE
CVE-2026-5874
Severity
CRITICAL
CVSS
9.6
EPSS
0.25%
Chrome
Original NVD Description
Use after free in PrivateAI in Google Chrome prior to 147.0.7727.55 allowed a remote attacker who convinced a user to engage in specific UI gestures to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)
Related CVEs
Other vulnerabilities affecting the same vendor(s)