PT-2026-46618 · Google · Google Chrome+1
CVE-2026-11090
·
Published
2026-04-07
·
Updated
2026-08-31
CVSS v2.0
7.8
High
| Vector | AV:N/AC:L/Au:N/C:C/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Google Chrome versions prior to 149.0.7827.53
Description
An uninitialized use in ANGLE (Almost Native Graphics Layer Engine), a compatibility layer between OpenGL ES and native graphics APIs, allows a remote attacker to leak cross-origin data. This is achieved by inducing the browser to process a specially crafted HTML page.
Recommendations
Update to version 149.0.7827.53 or later.
Fix
DoS
Out of bounds Read
Memory Corruption
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Angle
Google Chrome