CVE-2026-7343General(apple / chrome)

MEDIUMCVSS 7.5 · HIGH

Exploitation observed; activity peaked at 3 mentions and remains active

Immediate actions

  • Patch apple chrome systems immediately
  • Assume compromise if assets are exposed

Recommended action window: Immediate (within 24h)

NVD description

Use after free in Views in Google Chrome on Windows prior to 147.0.7727.138 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Critical)

5.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-416

Priority

MEDIUM

Exploitation

ACTIVE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • chrome
  • linux_kernel
  • macos
  • windows

Threat summary

  • Active exploitation appears in 1 classified signals
  • Patch or workaround signal is available
  • 7 mentions across 5 observed days
  • Momentum state: stable

What's happening

  • Active exploitation reported across 1 signal
  • Patch or workaround mentioned in 2 signals
  • Technical details provided in 5 signals
  • General: 3 classified signals
  • Disclosure: 2 classified signals
  • Peaked 4d ago at 3 mentions (2026-04-29); latest day: 1
  • 7 total mentions across 5 days

Affected systems

Products
chromelinux_kernelmacoswindows

1 version affected across 4 products

Deep dive

Activity timeline7 mentions / 5d
01223Mentions · 2026-04-29: 3Mentions · 2026-05-01: 1Mentions · 2026-05-05: 1Mentions · 2026-05-07: 1Mentions · 2026-05-08: 1Active Exploitation · 2026-04-29: 1Patch / Workaround · 2026-04-29: 1Patch / Workaround · 2026-05-01: 1Technical Details · 2026-04-29: 3Technical Details · 2026-05-01: 1Technical Details · 2026-05-05: 104-2905-0105-0505-0705-08
Signal classification4 categories
General
342.9%
Disclosure
228.6%
Active Exploitation
114.3%
Patch
114.3%
Referenced assets5 URLs
Classification over time
DateTotalLabels
2026-04-293
Active Exploitation1Disclosure2
2026-05-011
Patch1
2026-05-051
General1
2026-05-071
General1
2026-05-081
General1
Full discourse7 posts
  • NerdieNews@NewsNerdie
    Active Exploitation

    CVE-2026-7343 in Google Chrome is being actively exploited on Windows—attackers can execute remote code via a use-after-free flaw. Patch now to prevent potential breaches. #NerdieNews #CyberSecurity #InfoSec #Vulnerability #Microsoft #Google https://t.co/uEggM4f8mH

    Post summary

    CVE-2026-7343 is currently being exploited in the wild, allowing remote code execution via a use‑after‑free flaw in Google Chrome, and a patch has been released to mitigate the risk.

    0001037
    57 followersView on X
  • Stuart 🇨🇷@stooee_
    General

    After analyzing 75% of vulnerabilities from past week, CVE-2026-7343 has 8 articles published from different internet sources, no other cve has these many articles. More information here: https://cves.st00ee.com/ #vulnerability #CyberSecurity #ThreatIntel #CVE #SecurityAlert

    Post summary

    The post notes high article coverage for CVE-2026-7343 but offers no technical, exploit, or mitigation details.

    0000040
    71 followersView on X
  • Stuart 🇨🇷@stooee_
    General

    After analyzing 60% of vulnerabilities from past week, CVE-2026-7343 has 8 articles published from different internet sources, no other cve has these many articles. More information here: https://cves.st00ee.com/ #vulnerability #CyberSecurity #ThreatIntel #CVE #SecurityAlert

    Post summary

    The post notes that CVE‑2026‑7343 has attracted multiple articles and links to additional information, but it does not provide details on the vulnerability, PoC, exploit, patch, or active exploitation.

    0000047
    70 followersView on X
  • Aakash Rahsi@rahsi_aaka
    General

    CVE-2026-7343 | Chromium: CVE-2026-7343 Use after free in Views | RAHSI Framework™ https://www.aakashrahsi.online/post/cve-2026-7343 https://t.co/nSXtORSOLZ

    Post summary

    The text identifies CVE‑2026‑7343 as a use‑after‑free flaw in Chromium’s Views component but provides only minimal detail and no information on PoC, exploitation, patching, or debunking.

    0000030
    1 followersView on X
  • WindowsForum@windowsforum
    Patch

    🚨 Chrome’s Views sandbox escape (CVE-2026-7343) is the nightmare combo: memory-safety bug + Windows + “escape.” Translation: patch speed matters more than your restart policy. https://windowsforum.com/threads/cve-2026-7343-chrome-views-sandbox-escape-update-chrome-on-windows-147-0-7727-138.416055/?utm_source=x&utm_medium=social&utm_campaign=news_node84 #SandboxEscape #ChromeSecurity #WindowsPatching #UseAfterFree https://t.co/QKuazVUlYx

    Post summary

    The tweet discusses CVE‑2026‑7343, a sandbox escape due to a memory‑safety bug in Chrome on Windows, and stresses the importance of timely patching rather than relying on restart policies.

    0000033
    1.1K followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-7343 Use After Free in Google Chrome Views on Windows Prior to 147.0.7727.138 https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-7343

    Post summary

    CVE‑2026‑7343 is a use‑after‑free flaw in Google Chrome on Windows prior to 147.0.7727.138; the snippet provides the vulnerability type but no PoC, exploit, patch, or evidence of active exploitation.

    0000044
    4.0K followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-7343 Use after free in Views in Google Chrome on Windows prior to 147.0.7727.138 allowed a remote attacker who had compromised the renderer process to potentially perform a … https://www.cve.org/CVERecord?id=CVE-2026-7343

    Post summary

    The text announces a Use‑After‑Free vulnerability in Google Chrome for Windows before version 147.0.7727.138, providing technical details but no PoC, exploit, or patch information.

    00000137
    57.3K followersView on X
CPE platform detail4 entries

4 of 4 entries

PartVendorProductVersionTarget SWTarget HW
OSapplemacos---
Appgooglechrome---
OSlinuxlinux_kernel---
OSmicrosoftwindows---

Explore more