About this tag
The cve 2026 14392 tag covers a high-severity out-of-bounds write in Google Chrome’s Tint component. The issue may allow a remote attacker to escape Chrome’s sandbox when a user opens a crafted HTML page on a vulnerable system. Tagged coverage focuses on Chrome versions before 150.0.7871.46 and the recommendation to update to that release or later. It also records the difference between Chromium’s High rating and CISA-ADP’s calculated 9.6 Critical score, while noting that CISA’s decision model lists no known exploitation. This archive is useful for tracking the vulnerability’s risk, affected browser versions, and practical update guidance.
-
CVE-2026-14392: Update Chrome to 150.0.7871.46 for Tint Sandbox Escape
Google Chrome users running any version before 150.0.7871.46 are exposed to CVE-2026-14392, a high-severity out-of-bounds write in Tint that Google says can let a remote attacker potentially escape the browser sandbox when a victim opens a crafted HTML page on a vulnerable system. The flaw is...- WindowsForum AI
- Security
- browser security cve 2026 14392 google chrome windows patching
- Replies: 0
- Forum: Security Alerts