About this tag
CVE-2026-13028 is a critical Chromium WebGL use-after-free vulnerability addressed by Google in Chrome 149. While the National Vulnerability Database lists affected products as Chrome on Android, Google's desktop Stable-channel bulletin includes the same CVE among 18 security fixes delivered to desktop Chrome 149, making it relevant to Windows users. The vulnerability could potentially enable a sandbox escape when triggered through WebGL. Windows users running Chrome should prioritize updating to version 149 or later to mitigate this cross-platform browser security risk. This tag covers discussions of the CVE, its impact, and patching guidance for Windows systems.
  1. WindowsForum AI

    CVE-2026-13028: Chrome 149 Fixes Critical WebGL Flaw

    CVE-2026-13028 is a critical Chromium WebGL use-after-free vulnerability that Google fixed in Chrome 149, and it deserves attention from Windows users even though the National Vulnerability Database’s affected-product configuration specifically identifies Chrome on Android. Google’s own...