CVE-2026-15123Disclosure(google / chrome)

LOWCVSS 8.8 · HIGH

Signal is active with 2 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

Inappropriate implementation in DOM in Google Chrome prior to 150.0.7871.115 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-122

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • chrome

Threat summary

  • 3 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Technical details provided in 2 signals
  • Disclosure: 2 classified signals
  • General: 1 classified signal
  • Peaked at 2 mentions on most recent observed day (2026-07-09)
  • 3 total mentions across 2 days

Affected systems

Vendors
Products
chrome

Deep dive

Activity timeline3 mentions / 2d
01122Mentions · 2026-07-08: 1Mentions · 2026-07-09: 2Technical Details · 2026-07-09: 207-0807-09
Signal classification2 categories
Disclosure
266.7%
General
133.3%
Referenced assets3 URLs
Classification over time
DateTotalLabels
2026-07-081
General1
2026-07-092
Disclosure2
Full discourse3 posts
  • CVE@CVEnew
    Disclosure

    CVE-2026-15123 Inappropriate implementation in DOM in Google Chrome prior to 150.0.7871.115 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.… https://www.cve.org/CVERecord?id=CVE-2026-15123

    Post summary

    The text announces a DOM implementation flaw in Chrome (CVE-2026-15123) that could lead to heap corruption through crafted HTML, but provides no PoC, exploit code, active exploitation evidence, or patch details.

    00001708
    57.8K followersView on X
  • Infoflowcloud@infoflowcloud
    Disclosure

    🚨*CVE* CVE-2026-15123 Inappropriate implementation in DOM in Google Chrome prior to 150.0.7871.115 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.… https://www.cve.org/CVERecord?id=CVE-2026-15123 ----- Traducción: CVE-2026-15123 Imp… http://infoflow.cloud`

    Post summary

    The text announces CVE‑2026‑15123, detailing an inappropriate DOM implementation in Chrome <150.0.7871.115 that can lead to heap corruption through crafted HTML, and links to the official CVE record, but offers no PoC, exploit, or patch details.

    0000055
    91 followersView on X
  • VulDB 🛡@vuldb
    General

    The severity is increased for this new vulnerability affecting Google Chrome (CVE-2026-15123) https://vuldb.com/vuln/377079

    Post summary

    The text announces that the severity of a new Chrome vulnerability (CVE-2026-15123) has increased, but provides no further technical or mitigation details.

    0000097
    2.3K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appgooglechrome---

Explore more