CVE-2026-9913
Analyzed Analyzed - Analysis Complete

ANGLE Memory Corruption in Google Chrome

Vulnerability report for CVE-2026-9913, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-05-28

Last updated on: 2026-07-21

Assigner: Chrome

Description

Inappropriate implementation in ANGLE in Google Chrome prior to 148.0.7778.216 allowed a remote attacker to potentially perform out of bounds memory access via a crafted HTML page. (Chromium security severity: High)

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-05-28
Last Modified
2026-07-21
Generated
2026-07-29
AI Q&A
2026-05-29
EPSS Evaluated
2026-07-28
NVD
EUVD

Affected Vendors & Products

Showing 1 associated CPE
Vendor Product Version / Range
google chrome to 148.0.7778.216 (exc)

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-125 The product reads data past the end, or before the beginning, of the intended buffer.

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

This vulnerability is an inappropriate implementation issue in ANGLE within Google Chrome versions prior to 148.0.7778.216. It allows a remote attacker to potentially perform out of bounds memory access by using a specially crafted HTML page.

Impact Analysis

The vulnerability can lead to out of bounds memory access, which may allow an attacker to execute arbitrary code, cause a crash, or leak sensitive information on the affected system.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-9913. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart