Apr 01, 2026 • [email protected] (The Hacker News)
New Chrome Zero-Day CVE-2026-5281 Under Active Exploitation — Patch Released
Google has released critical security updates for Chrome addressing 21 vulnerabilities, including an actively exploited zero-day vulnerability...
Executive Summary
Google has released critical security updates for Chrome addressing 21 vulnerabilities, including an actively exploited zero-day vulnerability (CVE-2026-5281). The flaw is a use-after-free vulnerability in Dawn, Google's open-source implementation of the WebGPU standard. While the CVSS score is not yet assigned, Google has confirmed active exploitation in the wild, indicating immediate risk to unpatched users. This type of memory corruption vulnerability could allow attackers to achieve code execution or escalate privileges on affected systems. All Chrome users should update to the latest version immediately to mitigate potential compromise.
Summary
Google on Thursday released security updates for its Chrome web browser to address 21 vulnerabilities, including a zero-day flaw that it said has been exploited in the wild. The high-severity vulnerability, CVE-2026-5281 (CVSS score: N/A), concerns a use-after-free bug in Dawn, an open-source and cross-platform implementation of the WebGPU standard. "Use-after-free in Dawn in Google Chrome prior
Published Analysis
Google has released critical security updates for Chrome addressing 21 vulnerabilities, including an actively exploited zero-day vulnerability (CVE-2026-5281). The flaw is a use-after-free vulnerability in Dawn, Google's open-source implementation of the WebGPU standard. While the CVSS score is not yet assigned, Google has confirmed active exploitation in the wild, indicating immediate risk to unpatched users. This type of memory corruption vulnerability could allow attackers to achieve code execution or escalate privileges on affected systems. All Chrome users should update to the latest version immediately to mitigate potential compromise. Google on Thursday released security updates for its Chrome web browser to address 21 vulnerabilities, including a zero-day flaw that it said has been exploited in the wild. The high-severity vulnerability, CVE-2026-5281 (CVSS score: N/A), concerns a use-after-free bug in Dawn, an open-source and cross-platform implementation of the WebGPU standard. "Use-after-free in Dawn in Google Chrome prior Google on Thursday released security updates for its Chrome web browser to address 21 vulnerabilities, including a zero-day flaw that it said has been exploited in the wild. The high-severity vulnerability, CVE-2026-5281 (CVSS score: N/A), concerns a use-after-free bug in Dawn, an open-source and cross-platform implementation of the WebGPU standard. "Use-after-free in Dawn in Google Chrome prior
Linked Entities
- CVE-2026-5281