Google Chrome Tab Groups Use-After-Free Vulnerability Allowing Arbitrary Code Execution

Vulnerability

A use-after-free vulnerability has been identified in the Tab Groups feature of Google Chrome. This issue affects versions prior to 148.0.7778.168 and allows remote attackers to execute arbitrary code by sending malicious network traffic. The vulnerability arises from improper memory management, where the application continues to use a memory resource after it has been freed, potentially leading to exploitation.

Impact

Exploitation of this vulnerability could result in arbitrary code execution on the affected system.

Remediation

Users can update to Google Chrome version 148.0.7778.168 or later to address this vulnerability.

Added: May 14, 2026, 9:15 PM
Updated: May 14, 2026, 9:15 PM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
2.5
exploitability
3.6
remediation
7.7
relevance
8.3
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.