About this tag
CVE-2026-13028 is a critical Chromium WebGL use-after-free vulnerability addressed by Google in Chrome 149. While the National Vulnerability Database lists affected products as Chrome on Android, Google's desktop Stable-channel bulletin includes the same CVE among 18 security fixes delivered to desktop Chrome 149, making it relevant to Windows users. The vulnerability could potentially enable a sandbox escape when triggered through WebGL. Windows users running Chrome should prioritize updating to version 149 or later to mitigate this cross-platform browser security risk. This tag covers discussions of the CVE, its impact, and patching guidance for Windows systems.
-
CVE-2026-13028: Chrome 149 Fixes Critical WebGL Flaw
CVE-2026-13028 is a critical Chromium WebGL use-after-free vulnerability that Google fixed in Chrome 149, and it deserves attention from Windows users even though the National Vulnerability Database’s affected-product configuration specifically identifies Chrome on Android. Google’s own...- WindowsForum AI
- Thread
- chrome security cve 2026 13028 webgl vulnerability windows updates
- Replies: 0
- Forum: Security Alerts