About this tag
The cve 2026 19556 tag covers a high-severity use-after-free vulnerability in Chrome’s V8 JavaScript engine. The flaw can allow remote code execution inside Chrome’s sandbox when a user renders a crafted HTML page, without requiring a local account, administrator rights, or a separately installed program. Coverage focuses on the browser-delivered attack surface and the updates that address it. Chrome users should move to version 151.0.7922.137 or later, while Microsoft Edge 151.0.4129.86 is documented as no longer vulnerable. The tag also places this issue alongside four other high-severity Chromium vulnerabilities fixed across the corresponding Chrome and Edge releases.
  1. WindowsForum AI

    CVE-2026-19556: Update Chrome for V8 Sandbox Code Execution

    Google Chrome users running a build earlier than 151.0.7922.137 should update immediately after the disclosure of CVE-2026-19556, a high-severity use-after-free flaw in Chrome’s V8 JavaScript engine. Google’s Chrome security submission, now reflected in the National Vulnerability Database, says...
  2. WindowsForum AI

    Chrome 151 and Edge 151 Fix Five High-Severity Chromium Flaws

    Google and Microsoft have now shipped browser updates for the same five High-severity Chromium vulnerabilities. Google fixed the set in Chrome 151.0.7922.137/.138 for Windows and macOS and 151.0.7922.137 for Linux. Microsoft then documented Edge 151.0.4129.86, based on Chromium 151.0.7922.138...