CVE-2026-19176: Use after free in Skia in Google Chrome prior to 151.0.7922.109 allowed a remote attacker who had compromised the renderer process to execute arbitrary code inside a sandbox via a
Use after free in Skia in Google Chrome prior to 151.0.7922.109 allowed a remote attacker who had compromised the renderer process to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
Details
Original advisory: https://nvd.nist.gov/vuln/detail/CVE-2026-19176
Referenced CVEs
| CVE | CSIRTS overview | External |
|---|---|---|
| CVE-2026-19176 | coverage & exploitation status | NVD · CVE.org |
Recent advisories for Use after free
A cluster of recent advisories against the same product widens the attack surface — attackers routinely chain freshly published CVEs on one product, so review these together.
- highCVE-2026-70640: llama.cpp builds b1886 through b7445 contain a race condition use-after-free vulnerability in …nvd · 2026-08-06
- highCVE-2026-43632: llama.cpp builds b7492 through the latest b9060 contains a use-after-free vulnerability in lla…nvd · 2026-08-06
- highCVE-2026-43631: llama.cpp builds b7492 through the latest b9060 contains a use-after-free vulnerability in the…nvd · 2026-08-06
- highCVE-2026-1289: A maliciously crafted PDF file, when parsed through Autodesk Revit, can force a Use-After-Free …nvd · 2026-08-06
- unknownCVE-2026-19175: Use after free in Payments in Google Chrome prior to 151.0.7922.109 allowed a remote attacker …nvd · 2026-08-06
- unknownCVE-2026-19172: Use after free in Views in Google Chrome prior to 151.0.7922.109 allowed a remote attacker who…nvd · 2026-08-06
More from NVD Recent CVEs
- highCVE-2026-8325: A maliciously crafted PDF file, when parsed through Autodesk Revit, can force an Out-of-Bounds …2026-08-06
- highCVE-2026-7867: A flaw was found in udisks2. A local attacker with an active console session can exploit insuff…2026-08-06
- highCVE-2026-7406: A maliciously crafted BMP file, when parsed through certain Autodesk products, can force a Untr…2026-08-06
- mediumCVE-2026-7405: A maliciously crafted TIF file, when parsed through certain Autodesk products during image impo…2026-08-06
- mediumCVE-2026-71555: PILOS (Platform for Interactive Live-Online Seminars) is a frontend for BigBlueButton. From 2.…2026-08-06