CVE-2026-7337 is a high-severity type confusion flaw in Chrome’s V8 JavaScript engine, disclosed April 28, 2026, affecting Google Chrome before 147.0.7727.138 and patched in the April 28 Stable Channel desktop update for Windows, macOS, and Linux. The bug is not a garden-variety browser...
Chromium’s newly tracked CVE-2026-4440 is the sort of browser flaw that instantly commands attention because it sits in the WebGL attack surface, combines out-of-bounds read and write behavior, and is described as enabling arbitrary read/write through a crafted HTML page. Microsoft’s Security...