
CVE-2026-7974 Use after free in Blink in Google Chrome prior to 148.0.7778.96 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium … https://www.cve.org/CVERecord?id=CVE-2026-7974
Post summary
This snippet discloses CVE‑2026‑7974, a use‑after‑free vulnerability in Chrome’s Blink engine that permits remote code execution within the sandbox via a crafted HTML page.
