Use after free in Blink in Google Chrome prior to 146.0.7680.153 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
| Vendor | Product | Versions |
|---|---|---|
| microsoft | edge | < 146.0.7680.153 |
Updated vendor to Microsoft and added product Edge, along with a new tag for Chromium.
Marked exploit availability as true, noted active exploitation, and added new tag CVE-2026-4449.
Initial creation