VDB

CVE-2026-3909

CVE-2026-3909 PUBLISHED KEV

On March 13, 2026, Google published a security advisory to address vulnerabilities in the following product: Stable Channel Chrome for Desktop – versions prior to 146.0.7680.80 (Windows/Mac) and 146.0.7680.80 (Linux) On March 13, 2026, Cybersecurity and Infrastructure Security Agency (CISA) added CVE-2026-3909 to their Known Exploited Vulnerabilities (KEV) Database. The Cyber Centre encourages users and administrators to review the provided web link and apply the necessary updates, when available.

EPSS 0.45% · 64.1th percentile

Risk Scores

EPSS Score
0.45%
64.1th percentile

Affected Products

VendorProductVersions
GoogleStable Channel Chrome for Desktop – versions prior to 146.0.7680.80 (Windows/Mac) and 146.0.7680.80 (Linux)
MicrosoftStable Channel Chrome for Desktop – versions prior to 146.0.7680.80 (Windows/Mac) and 146.0.7680.80 (Linux)

Timeline

  • Mar 12, 2026 PoC Published
  • Mar 12, 2026 CVE Published
  • Mar 12, 2026 PoC Published
  • Mar 13, 2026 CISA KEV Added
  • Mar 13, 2026 PoC Published
  • Mar 13, 2026 EPSS Score
  • Mar 13, 2026 PoC Published
  • Mar 13, 2026 PoC Published
  • Mar 13, 2026 PoC Published
  • Mar 13, 2026 PoC Published
  • Mar 13, 2026 PoC Published
  • Mar 13, 2026 PoC Published
Open in Interactive Console →
$ Console Community · 100/wk Open console ›