Loading market data...
← Back to CVE feed

CVE-2026-6920

CRITICAL CVSS 9.6 View on NVD ↗

Description

Out of bounds read in GPU in Google Chrome on Android prior to 147.0.7727.117 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)

CVSS Vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H

Affected Products

google/android google/chrome linux/linux_kernel microsoft/windows
Published: Apr 23, 2026 18:16 UTC Modified: Apr 24, 2026 16:39 UTC