Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
3473 articles · 209574 vulns · 37/41 feeds (7d)
← Back to list
9.6
CVE-2026-85050PATCHED
google · chrome

CVE-2026-85050: Out of bounds write in WebGL in Google Chrome on on Android prior to 152.0.7977.82 allowed a remote attacker to execute

Description

Out of bounds write in WebGL in Google Chrome on on Android prior to 152.0.7977.82 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)

Affected Products

VendorProductVersions
googlechrome152.0.7977.82

Also Affects

Downstream vendors/products affected by this vulnerability

VendorProductSourceConfidence
googlechromecert_advisory90%

References

  • https://chromereleases.googleblog.com/2026/09/stable-channel-update-for-desktop_01882797386.html
  • https://issues.chromium.org/issues/549350408

Related News (4 articles)

Tier B
BSI Advisories4h ago
[NEU] [hoch] Google Chrome: Mehrere Schwachstellen
→ No new info (linked only)
Tier D
Heise Security9h ago
Jetzt patchen! Angreifer führen Schadcode in der Sandbox von Chrome aus
→ No new info (linked only)
Tier B
CERT-FR16h ago
Multiples vulnérabilités dans Google Chrome (04 septembre 2026)
→ No new info (linked only)
Tier C
VulDB20h ago
CVE-2026-85050 | Google Chrome up to 152.0.7977.75 WebGL out-of-bounds write
→ No new info (linked only)

Discussion (0)

Loading…

CVSS 3.19.6 CRITICAL
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H
CISA KEV❌ No
Actively exploited❌ No
Patch available
152.0.7977.82
CWECWE-787
PublishedSep 3, 2026
Trending Score53
Source articles4
Independent4
Info Completeness0/14
Missing: cve_id, title, description, vendor, product, versions, cvss, epss, cwe, kev, exploit, patch, iocs, mitre_attack

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Related CVEs (5)

HIGHCVE-2026-85046EXPKEV
CVE-2026-85046: Type confusion in V8 in Google Chrome prior to 152.0.7977.82 allowed a remote attacker to execute arbitrary code inside
Trending: 137
HIGHCVE-2026-11645EXP
CVE-2026-11645: Out of bounds read and write in V8 in Google Chrome prior to 149.0.7827.103 allowed a remote attacker to execute arbitra
Trending: 106
CRITICALCVE-2026-84325
CVE-2026-84325: Improper input validation in DataTransfer in Google Chrome prior to 152.0.7977.75 allowed a remote attacker leveraging s
Trending: 61
CRITICALCVE-2026-84353
CVE-2026-84353: Use after free in Shared Tab Groups in Google Chrome on on Android prior to 152.0.7977.75 allowed a remote attacker leve
Trending: 55
CRITICALCVE-2026-84324
CVE-2026-84324: Use after free in Proxy in Google Chrome prior to 152.0.7977.75 allowed a remote attacker to execute arbitrary code outs
Trending: 51

Pin to Dashboard

Verification

State: unverified
Confidence: 0%

Vulnerability Timeline

CVE Published
Sep 3, 2026
Discovered by ZDM
Sep 3, 2026
Patch Available
Sep 4, 2026