Zero Day Monitor
DashboardVulnerabilitiesTrendingZero-DaysNews
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
1040 articles · 105207 vulns · 38/41 feeds (7d)
← Back to list
8.8
CVE-2026-4450EXPLOITED
google · chrome

Out of bounds write in V8 in Google Chrome prior to 146.0.7680.153 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

Description

Out of bounds write in V8 in Google Chrome prior to 146.0.7680.153 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

Affected Products

VendorProductVersions
googlechrome< 146.0.7680.153

References

  • https://chromereleases.googleblog.com/2026/03/stable-channel-update-for-desktop_18.html(Vendor Advisory, Release Notes)
  • https://issues.chromium.org/issues/487746373(Issue Tracking, Permissions Required)

Related News (2 articles)

Tier A
Microsoft MSRC4d ago
Chromium: CVE-2026-4450 Out of bounds write in V8
→ No new info (linked only)
Tier B
CERT-FR4d ago
Multiples vulnérabilités dans Microsoft Edge (23 mars 2026)
→ No new info (linked only)
CVSS 3.18.8 HIGH
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
CISA KEV❌ No
Actively exploited✅ Yes
CWECWE-787
Published3/20/2026
Last enriched2h agov3
Trending Score31
Source articles2
Independent2
Info Completeness9/14
Missing: epss, kev, patch, iocs, mitre_attack

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Pin to Dashboard

Verification

State: verified
Confidence: 100%

Version History

v3
Last enriched 2h ago
v3Tier A2h ago

Updated vendor to Google and product to Chrome based on new article.

vendorproduct
via Microsoft MSRC
v2Tier A9h ago

Updated vendor to Microsoft and product to Edge, and marked exploit as available and actively exploited.

vendorproductexploitAvailableactivelyExploited
via Microsoft MSRC
v110h ago

Initial creation