CVE-2026-19556Patch(google / chrome)

LOWCVSS 8.8 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch google chrome systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

Use after free in V8 in Google Chrome prior to 151.0.7922.137 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-416

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • chrome

Threat summary

  • Patch or workaround signal is available
  • 6 mentions across 5 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 6 signals
  • Technical details provided in 6 signals
  • Disclosure: 1 classified signal
  • Peaked 2d ago at 2 mentions (2026-08-14); latest day: 1
  • 6 total mentions across 5 days

Affected systems

Vendors
Products
chrome

Deep dive

Activity timeline6 mentions / 5d
01122Mentions · 2026-08-12: 1Mentions · 2026-08-13: 1Mentions · 2026-08-14: 2Mentions · 2026-08-15: 1Mentions · 2026-08-16: 1Patch / Workaround · 2026-08-12: 1Patch / Workaround · 2026-08-13: 1Patch / Workaround · 2026-08-14: 2Patch / Workaround · 2026-08-15: 1Patch / Workaround · 2026-08-16: 1Technical Details · 2026-08-12: 1Technical Details · 2026-08-13: 1Technical Details · 2026-08-14: 2Technical Details · 2026-08-15: 1Technical Details · 2026-08-16: 108-1208-1308-1408-1508-16
Signal classification2 categories
Patch
583.3%
Disclosure
116.7%
Referenced assets5 URLs
Classification over time
DateTotalLabels
2026-08-121
Patch1
2026-08-131
Patch1
2026-08-142
Patch2
2026-08-151
Patch1
2026-08-161
Disclosure1
Full discourse6 posts
  • connect24h@connect24h
    Disclosure

    勘弁してほしい。ChromiumでUse-after-freeが5件同時だ。CVE-2026-19556〜19560で、V8、TabStrip、Extensions、HTML、Blinkが並ぶ。Microsoft EdgeもChromium由来の修正を取り込むため、利用範囲の広さがそのまま波及範囲になる。 #セキュリティ ソース: https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-19560

    Post summary

    The post announces five simultaneous Use‑after‑Free bugs (CVE‑2026‑19556‑19560) affecting Chromium components, notes that Microsoft Edge will apply the Chromium fixes, and links to the Microsoft Security Response Center update guide.

    00030622
    7.6K followersView on X
  • kokumօtօ@__kokumoto
    Patch

    Google Chrome 151で重大(Critical)な脆弱性5件が修正。CVE-2026-19556~19560で、いずれも解放後メモリ使用。うち19556はV8 JavaScriptエンジンにおけるもの。 https://cybersecuritynews.com/chrome-151-high-severity-flaws/

    Post summary

    Google Chrome 151 includes five critical CVEs (2026‑19556‑19560) fixed for memory‑use‑after‑free issues, including a V8 JavaScript engine flaw; a patch is available.

    00010660
    7.7K followersView on X
  • Daily CyberSecurity@Daily_CyberSec
    Patch

    Google's new Chrome security update patches 5 high-severity use-after-free bugs, including CVE-2026-19556 and CVE-2026-19560. Update now. #Chrome #Google #UseAfterFree #CVE #BrowserSecurity #PatchNow #Cybersecurity http://securityonline.info/chrome-use-after-free-update/

    Post summary

    Google releases a security update addressing five high‑severity use‑after‑free bugs, including CVE-2026-19556 and CVE-2026-19560, and urges users to update Chrome.

    01000435
    12.7K followersView on X
  • ケイ | IT・セキュリティ系副業Webライター@Teeeda_worker
    Patch

    Google Chrome 151の追加更新でUse-after-free脆弱性5件を修正 https://www.cybernote.click/2026/08/13/google-chrome-151-cve-2026-19556-19560-update/ #IT #Security #cybersecurity

    Post summary

    Google Chrome 151 update is released to fix five use‑after‑free vulnerabilities. The patch is available; no active exploitation or PoC details are reported.

    0000045
    213 followersView on X
  • Windows Forum@windowsforum
    Patch

    🚨 Chrome users below 151.0.7922.137 have a V8 use-after-free to patch. A crafted webpage can run code inside the sandbox—because “just browsing” remains a full-time security job. https://windowsforum.com/security-alerts.84/cve-2026-19556-update-chrome-for-v8-sandbox-code-execution.442882/?utm_source=x&utm_medium=social&utm_campaign=news_node84 #WindowsSecurity #V8JavascriptEngine #GoogleChrome #Cve202619556 https://t.co/vaLvzTWWj7

    Post summary

    The tweet announces that Chrome versions older than 151.0.7922.137 are affected by CVE‑2026‑19556, a V8 use‑after‑free vulnerability, and advises users to update to the patched release.

    0000064
    1.3K followersView on X
  • ケイ | IT・セキュリティ系副業Webライター@Teeeda_worker
    Patch

    Google Chrome 151の追加更新でUse-after-free脆弱性5件を修正 https://www.cybernote.click/2026/08/13/google-chrome-151-cve-2026-19556-19560-update/ #IT #Security #cybersecurity

    Post summary

    The article announces that Chrome 151’s latest update resolves five Use‑after‑free vulnerabilities identified by CVE‑2026‑19556 to 19560, with no evidence of active exploitation or a PoC being disclosed.

    0000055
    213 followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appgooglechrome---

Explore more