You are using an out of date browser. It may not display this or other websites correctly. You should upgrade or use an alternative browser.
cve 2026-7335
About this tag
CVE-2026-7335 is a high-severity use-after-free vulnerability in Chromium's media component, disclosed on April 28, 2026, and patched in Chrome stable desktop update 147.0.7727.137/138. The flaw could allow a remote attacker to execute code inside the browser sandbox via a crafted HTML page. For Windows administrators, this vulnerability underscores that browser updates are critical endpoint security events, as the bug resides in the media parsing functionality that processes attacker-supplied content at scale. Discussions on WindowsForum.com focus on the urgency of applying the patch and the operational implications for Windows systems running Chrome.
Google and Microsoft disclosed CVE-2026-7335 on April 28, 2026, after Chrome’s stable desktop update to 147.0.7727.137/138 fixed a high-severity use-after-free flaw in Chromium’s media component that could let a remote attacker run code inside the browser sandbox through a crafted HTML page. The...