Google Chrome Use-After-Free Vulnerability in Service Worker Allowing Heap Corruption

Vulnerability

A use-after-free vulnerability has been identified in the Service Worker component of Google Chrome on Desktop, affecting versions prior to 140.0.7339.127. This vulnerability could allow a remote attacker to exploit heap corruption by delivering a crafted HTML page.

Impact

Exploitation of this vulnerability could lead to heap corruption, allowing for potential arbitrary code execution.

Remediation

Users can update to Google Chrome version 140.0.7339.127 or later to address this vulnerability.

Added: Sep 10, 2025, 7:26 PM
Updated: Sep 10, 2025, 8:26 PM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
2.5
exploitability
4.4
remediation
7.7
relevance
0.5
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.