PT-2026-68719 · Google · V8+1
CVE-2026-19174
·
Published
2026-08-06
·
Updated
2026-09-06
CVSS v3.1
8.8
High
| Vector | AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Google Chrome versions prior to 151.0.7922.109
Description
An integer overflow exists in V8, the open-source JavaScript and WebAssembly engine. This flaw allows a remote attacker to execute arbitrary code within a sandbox by enticing a user to visit a crafted HTML page. The issue enables the corruption of native JIT (Just-In-Time) code space directly, which allows for code execution in the renderer without the V8 sandbox being involved. JIT is a method of improving performance by compiling code during execution rather than before.
Recommendations
Update Google Chrome to version 151.0.7922.109 or later.
Fix
DoS
Integer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Google Chrome
V8