
Chrome ANGLE Use-After-Free CVE: CVE-2026-0908 PT ID: PT-2026-2855 Vendor: Google Product: Chrome CVSS: 8.8 Credits: n/a Description: Use after free in ANGLE in Google Chrome prior to 144.0.7559.59 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Low) References: • https://dbugs.ptsecurity.com/vulnerability/CVE-2026-0908 • https://chromereleases.googleblog.com/2026/01/stable-channel-update-for-desktop_13.html • https://issues.chromium.org/issues/452209503 PoC/Exploit: https://github.com/lylzjnqe/CVE-2026-0908-Chrome-0-day-RCE #dbugs_vuln
Post summary
CVE-2026-0908 is a use‑after‑free flaw in Chrome's ANGLE component; PoC and exploit code are publicly available, but there is no evidence of active exploitation.

