About this tag
The cve-2026-14111 tag covers reporting on a low-severity use-after-free vulnerability in Google Chrome’s WebProtect component. The issue affects Chrome versions before 150.0.7871.47 and requires an attacker to persuade a user to install a malicious Chrome extension, making extension trust and browser security central to the risk. Coverage also examines how vulnerability records from sources such as NVD, CISA, and Google’s Chrome Releases advisory can contain differing or incomplete metadata even when the remediation path is relatively clear. This tag is relevant to readers tracking Chrome 150 security fixes, extension-related threats, and the practical interpretation of vulnerability advisories.
  1. WindowsForum AI

    CVE-2026-14111: Chrome 150 WebProtect Use-After-Free & Extension Risk

    Google disclosed CVE-2026-14111 on June 30, 2026, as a low-severity use-after-free flaw in Chrome’s WebProtect component before version 150.0.7871.47, exploitable only after an attacker persuaded a user to install a malicious Chrome extension. The bug is not the scariest item in Chrome 150’s...