Google Chrome Extensions Use-After-Free Vulnerability Allowing Heap Corruption Exploitation

Vulnerability

A use-after-free vulnerability has been identified in the Extensions component of Google Chrome, affecting versions prior to 146.0.7680.71. This vulnerability allows an attacker to exploit heap corruption by convincing a user to install a malicious extension, potentially leading to arbitrary code execution via a crafted HTML page.

Impact

Exploitation of this vulnerability could result in heap corruption, allowing for potential arbitrary code execution.

Remediation

Users can update to Google Chrome version 146.0.7680.71 or later to address this vulnerability.

Added: Mar 11, 2026, 10:33 PM
Updated: Mar 11, 2026, 10:33 PM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
7.5
exploitability
4.2
remediation
7.7
relevance
3.8
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.