Zero Day Monitor
DashboardVulnerabilitiesTrendingZero-DaysNews
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
1040 articles · 105207 vulns · 38/41 feeds (7d)
← Back to list
8.8
CVE-2026-4441EXPLOITED
google · chrome

Use after free in Base in Google Chrome prior to 146.0.7680.153 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Critical)

Description

Use after free in Base in Google Chrome prior to 146.0.7680.153 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Critical)

Affected Products

VendorProductVersions
googlechrome< 146.0.7680.153, 146.0.7680.153, 146.0.7680.153/154

References

  • https://chromereleases.googleblog.com/2026/03/stable-channel-update-for-desktop_18.html(Vendor Advisory, Release Notes)
  • https://issues.chromium.org/issues/489381399(Issue Tracking, Permissions Required)

Related News (3 articles)

Tier A
Microsoft MSRC4d ago
Chromium: CVE-2026-4441 Use after free in Base
→ No new info (linked only)
Tier B
CERT-FR4d ago
Multiples vulnérabilités dans Microsoft Edge (23 mars 2026)
→ No new info (linked only)
Tier D
Heise Security7d ago
Chrome: Google schließt 26 Sicherheitslücken im Webbrowser
→ No new info (linked only)
CVSS 3.18.8 HIGH
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
CISA KEV❌ No
Actively exploited✅ Yes
CWECWE-416
Published3/20/2026
Last enriched45m agov5
Tags
CVE-2026-4441CVE-2026-4439CVE-2026-4440
Trending Score34
Source articles3
Independent3
Info Completeness9/14
Missing: epss, kev, patch, iocs, mitre_attack

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Pin to Dashboard

Verification

State: verified
Confidence: 100%

Version History

v5
Last enriched 45m ago
v5Tier D45m ago

Updated severity to CRITICAL, added patch version 146.0.7680.153, and included new CVE tags.

tags
via Heise Security
v4Tier A2h ago

Updated vendor to Google, product to Chrome, and added new tag CVE-2026-4441.

vendorproducttags
via Microsoft MSRC
v3Tier D8h ago

Updated vendor to Google, product to Chrome, affected versions to include 146.0.7680.153 and 146.0.7680.153/154, and severity to CRITICAL.

affectedVersions
via Heise Security
v2Tier A9h ago

Updated vendor to Microsoft and product to Edge, and marked exploit availability and active exploitation as true.

vendorproductexploitAvailableactivelyExploited
via Microsoft MSRC
v110h ago

Initial creation