CVE-2026-3061Patch(apple / chrome)

LOWCVSS 9.1 · CRITICAL

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch apple chrome systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

Out of bounds read in Media in Google Chrome prior to 145.0.7632.116 allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page. (Chromium security severity: High)

1.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-125

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

DECLINING

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • chrome
  • linux_kernel
  • macos
  • windows

Threat summary

  • Patch or workaround signal is available
  • 16 mentions across 7 observed days
  • Momentum state: declining

What's happening

  • Patch or workaround mentioned in 10 signals
  • Technical details provided in 11 signals
  • Disclosure: 4 classified signals
  • General: 2 classified signals
  • Peaked 6d ago at 6 mentions (2026-02-24); latest day: 1
  • 16 total mentions across 7 days

Affected systems

Products
chromelinux_kernelmacoswindows

1 version affected across 4 products

Deep dive

Activity timeline16 mentions / 7d
02356Mentions · 2026-02-24: 6Mentions · 2026-02-25: 4Mentions · 2026-02-26: 1Mentions · 2026-02-27: 2Mentions · 2026-02-28: 1Mentions · 2026-03-01: 1Mentions · 2026-03-03: 1Patch / Workaround · 2026-02-24: 2Patch / Workaround · 2026-02-25: 4Patch / Workaround · 2026-02-26: 1Patch / Workaround · 2026-02-27: 1Patch / Workaround · 2026-03-01: 1Patch / Workaround · 2026-03-03: 1Technical Details · 2026-02-24: 4Technical Details · 2026-02-25: 3Technical Details · 2026-02-27: 2Technical Details · 2026-02-28: 1Technical Details · 2026-03-03: 102-2402-2502-2602-2702-2803-0103-03
Signal classification3 categories
Patch
1062.5%
Disclosure
425.0%
General
212.5%
Referenced assets13 URLs
Classification over time
DateTotalLabels
2026-02-246
Disclosure2General2Patch2
2026-02-254
Patch4
2026-02-261
Patch1
2026-02-272
Disclosure1Patch1
2026-02-281
Disclosure1
2026-03-011
Patch1
2026-03-031
Patch1
Full discourse16 posts
  • iototsecnews@iototsecnews
    Patch

    Chrome の脆弱性 CVE-2026-3061/3062/3063 が FIX:深刻度 High のメモリ破壊 https://iototsecnews.jp/2026/02/24/google-chrome-emergency-security-update-patches-three-high-severity-vulnerabilities/ Google Chrome における 3 件の脆弱性への対応は、単なる日常的なアップデートではなく、システム全体の制御を奪われかねないリスクを封じ込めるための緊急措置です。今回の修正のコアは、メモリ管理の不備を突く境界外アクセスの解消にあります。特に WebGPU やメディア処理といった、複雑なデータを高速に扱う領域が狙われており、攻撃者が用意した悪意の Web サイトを閲覧するだけで、ブラウザの保護機能であるサンドボックスを突破される危険性があります。アップデートをお急ぎください。 #Chrome #CVE20263061 #CVE20263062 #CVE20263063 #Google #Vulnerability

    Post summary

    Google Chrome issued emergency patches for CVE‑2026‑3061/3062/3063, high‑severity memory corruption vulnerabilities that could allow sandbox escape via WebGPU or media processing; users are urged to update immediately.

    02000158
    483 followersView on X
  • Misbar | مسبار@MisbarSec
    Patch

    تحديث عاجل لـ Google Chrome لسد ثغرات خطيرة جوجل أصدرت تحديث أمني طارئ لمتصفح Chrome، وصل الإصدار 145.0.7632.116/117 لنظامي Windows و macOS. هذا التحديث يعالج ثلاث ثغرات ذات خطورة عالية، بما في ذلك CVE-2026-3063، CVE-2026-3062، و CVE-2026-3061. تجاهل هذا التحديث يعرض المستخدمين لخطر استغلال هذه الثغرات. خطوات الحماية: * حدث متصفح Chrome فورًا إلى أحدث إصدار. * فعل التحديثات التلقائية في إعدادات المتصفح. * راجع سجل التحديثات للتأكد من تثبيت النسخة الجديدة. https://cybersecuritynews.com/google-chrome-emergency-security-update/ #الأمن_السيبراني #Chrome #تحديث_أمني

    Post summary

    Google Chrome issued an emergency update to patch three high‑severity CVEs (CVE‑2026‑3063, CVE‑2026‑3062, CVE‑2026‑3061); users are urged to update immediately.

    0002068
    53 followersView on X
  • ThreatSynop@ThreatSynop
    Patch

    🚨 Google Rushes Emergency Chrome Patch for 3 High-Severity Flaws (Media, Tint, DevTools) Google released an emergency Chrome Stable update (145.0.7632.116/117 for Windows/macOS; 144.0.7559.116 for Linux) fixing three high-severity bugs—CVE-2026-3061 (Media OOB read), CVE-2026-3062 (Tint OOB read/write), and CVE-2026-3063 (DevTools inappropriate implementation)—that could enable memory corruption, data leakage, or RCE chains if weaponized. Rapid patching is critical because browser bugs are prime initial-access vectors at internet scale. 🎯 Target: Global #️⃣ Category: #Vulnerability #BlueTeam 🔗 URL: https://cyberpress.org/google-rushes-emergency-chrome-update/

    Post summary

    Google released an emergency Chrome patch for three high‑severity CVEs (CVE‑2026‑3061, CVE‑2026‑3062, CVE‑2026‑3063) that could lead to memory corruption, data leakage, or RCE, with specific version updates provided.

    10010135
    196 followersView on X
  • Wondershare Recoverit | データ復元@RecoveritJP
    Patch

    \最新Tech情報をお届け/ ⚠️ Chrome に深刻な脆弱性3件、悪意あるページを開くだけで情報漏えいの可能性 Googleが緊急のセキュリティアップデートを配信中です。 今回確認された3件の脆弱性(CVE-2026-3061〜3063)は、細工されたWebページを開くだけで暗号鍵や個人情報が流出するリスクがあります。 自動更新の完了まで数週間かかる場合があるため、三点メニュー →「Chromeについて」から手動で更新を確認してください。

    Post summary

    Three new Chrome CVEs (CVE‑2026‑3061 to 3063) allow information leakage through malicious web pages; Google is pushing an urgent patch and users should manually update Chrome.

    01000405
    41.5K followersView on X
  • 【學】@manabu2111
    Patch

    「Google Chrome」に3件の脆弱性、境界外読み取り・書き込みの欠陥などに対処 - 窓の杜 https://forest.watch.impress.co.jp/docs/news/2087987.html 、本バージョンでは、以下の3件の脆弱性が修正された、 CVE-2026-3061、Out of bounds read in Media(High)、 CVE-2026-3062、Mut of bounds read and write in Tint(High)、(続く)

    Post summary

    The article reports that Google Chrome has fixed three CVEs, including CVE-2026-3061 and CVE-2026-3062, which are high‑severity out‑of‑bounds read/write vulnerabilities, with no evidence of active exploitation or PoC provided.

    1000074
    2.2K followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-3061 Out of Bounds Read Vulnerability in Google Chrome Prior to 145.0.7632.116 https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-3061

    Post summary

    The text announces CVE-2026-3061 as an out‑of‑bounds read vulnerability in Google Chrome versions prior to 145.0.7632.116, with no further details on exploitation or mitigation.

    0001078
    4.0K followersView on X
  • Ferramentas Linux@Cezar_H_Linux
    Patch

    🛑 URGENT: #Fedora 43 Chromium Update Required Three high-severity vulnerabilities (CVE-2026-3061, CVE-3062, CVE-3063) have been patched in Chromium 145.0.7632.116. Read more: 👉 https://tinyurl.com/bdfdd8dp #Security https://t.co/rZAdpdZLOa

    Post summary

    Three high‑severity CVEs (CVE‑2026‑3061, CVE‑3062, CVE‑3063) affecting Fedora 43 Chromium have been patched; users should update to Chromium 145.0.7632.116.

    0000063
    1.3K followersView on X
  • CRAC Learning - Tech@cracbot
    Disclosure

    CVE-2026-3061 (CVSS:9.1, CRITICAL) is Modified. Out of bounds read in Media in Google Chrome prior to 145.0.7632.116 allowed a remote attacker to perform an out of boun..https://nvd.nist.gov/vuln/detail/CVE-2026-3061 #cybersecurityawareness #cybersecurity #CVE #infosec #hacker #nvd #mitre

    Post summary

    The post offers a concise disclosure of CVE‑2026‑3061, indicating its high severity and describing an out‑of‑bounds memory read in Google Chrome, but it does not provide PoC, exploit code, active exploitation evidence, nor any patch information.

    0000026
    173 followersView on X
  • CRAC Learning - Tech@cracbot
    Disclosure

    CVE-2026-3061 (CVSS:9.1, CRITICAL) is Modified. Out of bounds read in Media in Google Chrome prior to 145.0.7632.116 allowed a remote attacker to perform an out of boun..https://nvd.nist.gov/vuln/detail/CVE-2026-3061 #cybersecurityawareness #cybersecurity #CVE #infosec #hacker #nvd #mitre

    Post summary

    CVE‑2026‑3061 is a critical out‑of‑bounds read vulnerability in Google Chrome that may allow remote attackers to read memory; the NVD link provides further details.

    0000040
    173 followersView on X
  • ポチッとな@WJf4szkSeHcwQyq
    Patch

    🖥️🚨 Googleは2026年2月23日(現地時間)、デスクトップ版 Google Chrome の安定版(Stable Channel)を更新し、CVE-2026-3061 を含む計3件の深刻な脆弱性に対処しました。 修正された脆弱性はいずれも深刻度が 「高(High)」 https://share.google/0KzOwtz1HqSwbBKKr

    Post summary

    Google released a Chrome update on February 23, 2026 to patch three high‑severity vulnerabilities, including CVE‑2026‑3061.

    0000077
    223 followersView on X
  • Ferramentas Linux@Cezar_H_Linux
    Patch

    Critical Chromium security update for #openSUSE users (Backports SLE-15-SP6). The update addresses CVE-2026-3061 and CVE-2026-3062, which are out-of-bounds memory flaws that could compromise your system. Read more: 👉 https://tinyurl.com/yc2fxs5u #Security https://t.co/6B7bM9wMPx

    Post summary

    The post announces a critical Chromium update for openSUSE that patches CVE-2026-3061 and CVE-2026-3062, which are out-of-bounds memory flaws, and directs users to a link for more details.

    0000048
    1.3K followersView on X
  • セキュリティ対策Lab@securityLab_jp
    Patch

    Google、Chromeの安定版で3件の脆弱性を緊急修正(CVE-2026-3061、CVE-2026-3062、CVE-2026-3063) https://rocket-boys.co.jp/security-measures-lab/google-chrome-stable-emergency-fixes-cve-2026-3061-cve-2026-3062-cve-2026-3063/ #セキュリティ対策Lab #セキュリティ #Security #CybersecurityNews

    Post summary

    Google Chrome stable releases emergency patches for three CVEs (CVE-2026-3061, CVE-2026-3062, CVE-2026-3063).

    00000149
    318 followersView on X
  • xvonfers@xvonfers
    General

    CVE-2026-3061

    Post summary

    The text only references the CVE ID without any additional context or details.

    00000586
    4.8K followersView on X
  • ThreatSynop@ThreatSynop
    Patch

    🚨 Google Patches 3 High-Severity Chrome Bugs With Remote Attack Risk (CVE-2026-3061/3062/3063) Google shipped a Chrome security update (Feb 23, 2026) fixing three high-severity flaws across Media, the Tint WebGPU shader compiler, and DevTools—two involving out-of-bounds memory access that can enable exploit chains toward RCE/sandbox escapes. Update Chrome immediately across endpoints because browser bugs are prime initial-access vectors and are often chained quickly after disclosure. 🎯 Target: Global/Chrome Users #️⃣ Category: #Vulnerability #BlueTeam 🔗 URL: https://www.techrepublic.com/article/news-google-chrome-high-severity-vulnerabilities-update-2026/

    Post summary

    Google released a Chrome update on Feb 23, 2026 to fix three high‑severity CVEs (CVE‑2026‑3061/3062/3063) involving out‑of‑bounds memory access that could lead to RCE or sandbox escape; users should update immediately.

    0000070
    196 followersView on X
  • CERT-PY@CERTpy
    General

    ⚠️ Vulnerabilidades en productos Google ❗ CVE-2026-3063 ❗ CVE-2026-3062 ❗ CVE-2026-3061 ➡️ Más info: https://www.cert.gov.py/vulnerabilidades-en-productos-google-3/ https://t.co/tUNWCPmdsH

    Post summary

    The post lists three Google product CVEs and provides links for more information, but offers no further details or actionable insights.

    00000163
    6.6K followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-3061 Out of bounds read in Media in Google Chrome prior to 145.0.7632.116 allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page. (Chromiu… https://www.cve.org/CVERecord?id=CVE-2026-3061

    Post summary

    CVE-2026-3061 is an out‑of‑bounds memory read vulnerability in Google Chrome that can be triggered via a crafted HTML page.

    00000218
    56.5K followersView on X
CPE platform detail4 entries

4 of 4 entries

PartVendorProductVersionTarget SWTarget HW
OSapplemacos---
Appgooglechrome---
OSlinuxlinux_kernel---
OSmicrosoftwindows---

Explore more