VDB
CVE-2026-4674
CVE-2026-4674
PUBLISHED
CVSS 8.800000190734863 HIGH
Out of bounds read in CSS in Google Chrome prior to 146.0.7680.165 allowed a remote attacker to perform out of bounds memory access via a crafted HTML page. (Chromium security severity: High)
EPSS 0.04% · 11.5th percentile
Risk Scores
CVSS v3.1
8.800000190734863
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS Score
0.04%
11.5th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Chrome | 146.0.7680.165, 146.0.7680.165, 146.0.7680.165 | |
| chrome | 0, 0, 0 |
Timeline
- Mar 24, 2026 EPSS Score
- Mar 24, 2026 CVE Published
- Mar 24, 2026 PoC Published
- Mar 24, 2026 PoC Published
- Mar 24, 2026 PoC Published
- Mar 24, 2026 PoC Published
- Mar 24, 2026 PoC Published
- Mar 24, 2026 PoC Published
- Mar 24, 2026 PoC Published
- Mar 24, 2026 PoC Published
- Mar 24, 2026 PoC Published
- Mar 24, 2026 PoC Published
References
- https://chromereleases.googleblog.com/2026/03/stable-channel-update-for-desktop_23.html advisory
- https://issues.chromium.org/issues/488188166 url
- https://nvd.nist.gov/vuln/detail/CVE-2026-4674 advisory
- https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-32187 advisory
- https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-4674 advisory
- https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-4680 advisory
- https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-4673 advisory
- https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-4459 advisory
- https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-4677 advisory
- https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-4679 advisory
- https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-4442 advisory
- https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-4675 advisory
- https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-4453 advisory
- https://issues.chromium.org/issues/485397284 url