← Back to BrewedIntel
vulnerabilityhighUse-After-FreeZero-DayCVE-2026-5281

Apr 01, 2026 • [email protected] (The Hacker News)

New Chrome Zero-Day CVE-2026-5281 Under Active Exploitation — Patch Released

Google has released critical security updates for Chrome addressing 21 vulnerabilities, including an actively exploited zero-day vulnerability...

Source
The Hacker News
Category
vulnerability
Severity
high

Executive Summary

Google has released critical security updates for Chrome addressing 21 vulnerabilities, including an actively exploited zero-day vulnerability (CVE-2026-5281). The flaw is a use-after-free vulnerability in Dawn, Google's open-source implementation of the WebGPU standard. While the CVSS score is not yet assigned, Google has confirmed active exploitation in the wild, indicating immediate risk to unpatched users. This type of memory corruption vulnerability could allow attackers to achieve code execution or escalate privileges on affected systems. All Chrome users should update to the latest version immediately to mitigate potential compromise.

Summary

Google on Thursday released security updates for its Chrome web browser to address 21 vulnerabilities, including a zero-day flaw that it said has been exploited in the wild. The high-severity vulnerability, CVE-2026-5281 (CVSS score: N/A), concerns a use-after-free bug in Dawn, an open-source and cross-platform implementation of the WebGPU standard. "Use-after-free in Dawn in Google Chrome prior

Published Analysis

Google has released critical security updates for Chrome addressing 21 vulnerabilities, including an actively exploited zero-day vulnerability (CVE-2026-5281). The flaw is a use-after-free vulnerability in Dawn, Google's open-source implementation of the WebGPU standard. While the CVSS score is not yet assigned, Google has confirmed active exploitation in the wild, indicating immediate risk to unpatched users. This type of memory corruption vulnerability could allow attackers to achieve code execution or escalate privileges on affected systems. All Chrome users should update to the latest version immediately to mitigate potential compromise. Google on Thursday released security updates for its Chrome web browser to address 21 vulnerabilities, including a zero-day flaw that it said has been exploited in the wild. The high-severity vulnerability, CVE-2026-5281 (CVSS score: N/A), concerns a use-after-free bug in Dawn, an open-source and cross-platform implementation of the WebGPU standard. "Use-after-free in Dawn in Google Chrome prior Google on Thursday released security updates for its Chrome web browser to address 21 vulnerabilities, including a zero-day flaw that it said has been exploited in the wild. The high-severity vulnerability, CVE-2026-5281 (CVSS score: N/A), concerns a use-after-free bug in Dawn, an open-source and cross-platform implementation of the WebGPU standard. "Use-after-free in Dawn in Google Chrome prior

Linked Entities

  • CVE-2026-5281