CVE-2026-5912Disclosure(apple / chrome)

LOWCVSS 8.8 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch apple chrome systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

Integer overflow in WebRTC in Google Chrome prior to 147.0.7727.55 allowed a remote attacker to perform an out of bounds memory write via a crafted HTML page. (Chromium security severity: Low)

1.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-472

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • chrome
  • linux_kernel
  • macos
  • windows

Threat summary

  • Patch or workaround signal is available
  • 6 mentions across 3 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 5 signals
  • Disclosure: 4 classified signals
  • General: 1 classified signal
  • Peaked 1d ago at 3 mentions (2026-04-14); latest day: 1
  • 6 total mentions across 3 days

Affected systems

Products
chromelinux_kernelmacoswindows

1 version affected across 4 products

Deep dive

Activity timeline6 mentions / 3d
01223Mentions · 2026-04-09: 2Mentions · 2026-04-14: 3Mentions · 2026-04-18: 1Patch / Workaround · 2026-04-18: 1Technical Details · 2026-04-09: 1Technical Details · 2026-04-14: 3Technical Details · 2026-04-18: 104-0904-1404-18
Signal classification3 categories
Disclosure
466.7%
General
116.7%
Patch
116.7%
Referenced assets3 URLs
Classification over time
DateTotalLabels
2026-04-092
Disclosure1General1
2026-04-143
Disclosure3
2026-04-181
Patch1
Full discourse6 posts
  • VulDB 🛡@vuldb
    General

    There is a new vulnerability with elevated criticality in Google Chrome (CVE-2026-5912) https://vuldb.com/vuln/356446

    Post summary

    The tweet merely flags the existence of a new Chrome vulnerability (CVE-2026-5912) with critical status and links to a database page, without further technical or exploit information.

    0101091
    2.1K followersView on X
  • Giuseppe Paternicola@giuseppe_1337
    Patch

    🚨 CVE-2026-5912 | CVSS 8.8 HIGH Integer overflow in Chrome WebRTC (<147.0.7727.55) enables remote code execution via crafted HTML. Out-of-bounds memory write possible. Update Chrome immediately. #CVE #PatchNow #ThreatIntel https://t.co/I4P3sagubm

    Post summary

    The tweet announces CVE-2026-5912, describing an integer overflow in Chrome WebRTC that allows remote code execution and urges users to update Chrome immediately.

    0000070
    25 followersView on X
  • Aakash Rahsi@rahsi_aaka
    Disclosure

    CVE-2026-5912 | Chromium: CVE-2026-5912 Integer overflow in WebRTC https://www.aakashrahsi.online/post/cve-2026-5912 https://t.co/2Szqg7699u

    Post summary

    The post merely announces the identification of an integer overflow in Chromium’s WebRTC component, offering no exploit details or mitigation advice.

    0000023
    1 followersView on X
  • Aakash Rahsi@rahsi_aaka
    Disclosure

    CVE-2026-5912 | Chromium: CVE-2026-5912 Integer overflow in WebRTC https://www.aakashrahsi.online/post/cve-2026-5912 https://t.co/B1qPQhVsaP

    Post summary

    A newly disclosed integer overflow vulnerability (CVE-2026-5912) in Chromium's WebRTC component is highlighted, with links provided for further details.

    000009
    1 followersView on X
  • Aakash Rahsi@rahsi_aaka
    Disclosure

    CVE-2026-5912 | Chromium: CVE-2026-5912 Integer overflow in WebRTC https://www.aakashrahsi.online/post/cve-2026-5912 https://t.co/aATaJj3f2l

    Post summary

    The tweet references a newly disclosed CVE-2026-5912 affecting Chromium’s WebRTC via an integer overflow, pointing to a blog post that likely contains further technical details.

    000008
    1 followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-5912 Integer Overflow in WebRTC in Google Chrome Prior to 147.0.7727.55 https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-5912

    Post summary

    A CVE-2026-5912 integer‑overflow vulnerability in WebRTC affecting Google Chrome versions before 147.0.7727.55 has been disclosed, but no PoC, exploit, patch, or active exploitation details are provided.

    0000056
    4.0K followersView on X
CPE platform detail4 entries

4 of 4 entries

PartVendorProductVersionTarget SWTarget HW
OSapplemacos---
Appgooglechrome---
OSlinuxlinux_kernel---
OSmicrosoftwindows---

Explore more