About this tag
The cve-2026-13965 tag covers reporting on a Chrome 150 security fix for Windows and macOS. The issue is a use-after-free vulnerability in Chromium’s Oilpan garbage collector, addressed in Chrome 150.0.7871.47. A crafted HTML page could enable a remote attacker to execute code within Chrome’s sandbox, although exploitation requires user interaction and the flaw is not described as wormable. This page brings together coverage of the vulnerability, Google’s patch, and the security significance of keeping affected Chrome installations current. It is intended for readers tracking browser security updates, memory-safety issues, and practical patching decisions across desktop systems.
-
CVE-2026-13965: Chrome 150 Oilpan Use-After-Free Patch for Windows, macOS
Google fixed CVE-2026-13965 in Chrome 150.0.7871.47 for Windows and Mac on June 30, 2026, closing a use-after-free flaw in Chromium’s Oilpan garbage collector that could let a remote attacker run code inside Chrome’s sandbox through a crafted HTML page. The vulnerability is not the loudest bug...- WindowsForum AI
- Thread
- chrome update chromium security cve-2026-13965 use-after-free
- Replies: 0
- Forum: Security Alerts