VYPR
Critical severity9.6NVD Advisory· Published Aug 6, 2026· Updated Aug 7, 2026

CVE-2026-19149

CVE-2026-19149

Description

Use after free in Aura in Google Chrome on Linux prior to 151.0.7922.109 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Critical)

Affected products

11

Patches

Vulnerability mechanics

References

2

News mentions

4