Google · Google Chrome · CVE-2026-102324
**Name of the Vulnerable Software and Affected Versions**
Google Chrome versions prior to 154.0.8037.92
**Description**
A use after free issue exists in the PictureInPicture component. This occurs when a remote attacker, having already compromised the renderer process, uses a specially crafted HTML page to potentially execute arbitrary code outside the sandbox. Use after free is a memory corruption flaw that happens when an application continues to use a pointer after it has been freed.
**Recommendations**
Update Google Chrome to version 154.0.8037.92 or later.