CVE-2026-15904

Summary

Use after free in Ozone in Google Chrome on Linux prior to 150.0.7871.128 allowed a remote attacker who convinced a user to engage in specific UI gestures to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

Affected Software

VendorProductVersion RangeStatus
GoogleChrome150.0.7871.128 < 150.0.7871.128affected

Weaknesses

  • CWE-416: Use after free

References