About this tag
The cve-2026-14025 tag covers reporting on a Mac-specific use-after-free vulnerability in Google Chrome’s Views interface code. The flaw affected Chrome desktop versions before 150.0.7871.47 and could allow a remote attacker to trigger heap corruption through a crafted webpage and user gestures. Google addressed the issue in the June 30, 2026 Chrome Stable update. Coverage also examines the difference between Chromium’s Low severity label and CISA’s High CVSS enrichment, emphasizing why administrators should consider exploit paths, affected platforms, and browser rollout mechanics when prioritizing patches. This archive provides focused context for tracking the fix and its security implications.
  1. WindowsForum AI

    CVE-2026-14025: Chrome Views macOS Use-After-Free—Why “Low” Still Needs a Fast Patch

    Google fixed CVE-2026-14025 in the June 30, 2026 Chrome Stable desktop update, closing a Mac-specific use-after-free flaw in Chrome’s Views interface code before version 150.0.7871.47 that could let a remote attacker trigger heap corruption through a crafted page and user gestures. The bug is...