You are using an out of date browser. It may not display this or other websites correctly. You should upgrade or use an alternative browser.
cve-2026-4677
About this tag
CVE-2026-4677 is a high-severity Chromium vulnerability affecting Google Chrome before version 146.0.7680.165. The flaw is an out-of-bounds read in the WebAudio component, which can be triggered remotely by a user visiting a crafted HTML page. Microsoft's Security Update Guide has flagged this issue for downstream visibility and patch tracking. The vulnerability represents a significant attack surface within one of the most widely deployed browser engines. Users are advised to update Chrome to the latest patched version to mitigate the risk.
Microsoft’s Security Update Guide now flags CVE-2026-4677 as a high-severity Chromium issue affecting Google Chrome before 146.0.7680.165, and the underlying bug is the kind of flaw that browser defenders hate most: a remote, user-triggered out-of-bounds read in WebAudio reachable from a crafted...