You are using an out of date browser. It may not display this or other websites correctly. You should upgrade or use an alternative browser.
cve 2026 5859
About this tag
CVE-2026-5859 is a critical Chromium vulnerability involving an integer overflow in WebML that leads to heap corruption. The flaw affects Google Chrome versions prior to 147.0.7727.55 and also impacts Microsoft Edge, as both browsers share the Chromium engine. A remote attacker could exploit this issue by crafting a malicious HTML page, potentially causing heap corruption. Security teams are advised to treat this as an urgent patch item. Microsoft has acknowledged the vulnerability in its Security Update Guide, highlighting the downstream risk for enterprise environments relying on Chromium-based browsers.
A newly published Chromium flaw, CVE-2026-5859, is the kind of browser vulnerability that security teams should treat as an urgent patch item rather than an abstract identifier. Google says the issue is an integer overflow in WebML affecting Chrome versions prior to 147.0.7727.55, and that a...