Zero Day Monitor
DashboardVulnerabilitiesTrendingZero-DaysNews
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
1040 articles · 105207 vulns · 38/41 feeds (7d)
← Back to list
8.8
CVE-2026-4449EXPLOITED
microsoft · edge

Use after free in Blink in Google Chrome prior to 146.0.7680.153 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

Description

Use after free in Blink in Google Chrome prior to 146.0.7680.153 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

Affected Products

VendorProductVersions
microsoftedge< 146.0.7680.153

References

  • https://chromereleases.googleblog.com/2026/03/stable-channel-update-for-desktop_18.html(Vendor Advisory, Release Notes)
  • https://issues.chromium.org/issues/487117772(Issue Tracking, Permissions Required)

Related News (2 articles)

Tier A
Microsoft MSRC4d ago
Chromium: CVE-2026-4449 Use after free in Blink
→ No new info (linked only)
Tier B
CERT-FR4d ago
Multiples vulnérabilités dans Microsoft Edge (23 mars 2026)
→ No new info (linked only)
CVSS 3.18.8 HIGH
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
CISA KEV❌ No
Actively exploited✅ Yes
CWECWE-416
Published3/20/2026
Last enriched2h agov3
Tags
CVE-2026-4449Chromium
Trending Score31
Source articles2
Independent2
Info Completeness9/14
Missing: epss, kev, patch, iocs, mitre_attack

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Pin to Dashboard

Verification

State: verified
Confidence: 100%

Version History

v3
Last enriched 2h ago
v3Tier A2h ago

Updated vendor to Microsoft and added product Edge, along with a new tag for Chromium.

vendorproducttags
via Microsoft MSRC
v2Tier A9h ago

Marked exploit availability as true, noted active exploitation, and added new tag CVE-2026-4449.

exploitAvailableactivelyExploitedtags
via Microsoft MSRC
v110h ago

Initial creation