Skip to content

Chrome Dawn Use-After-Free Vulnerability - 20260407001

Overview

The vulnerability stems from a use-after-free weakness in Dawn. Attackers can exploit this security flaw to trigger browser crashes, data corruption, rendering issues, or other abnormal behaviour.

What is vulnerable?

Product(s) Affected Version(s) CVE CVSS Severity
Chromium-based Browsers
- Google Chrome
- Microsoft Edge
- Brave
- Vivaldi
< 146.0.7680.177/178 for Windows/Mac
< 146.0.7680.177 for Linux
CVE-2026-5281 8.8 High

What has been observed?

CISA has added one or more of the mentioned items to their Known Exploited Vulnerabilities catalog. The WASOC has not received any reports of exploitation of this vulnerability on Western Australian Government networks at the time of writing.

Recommendation

The WASOC recommends administrators apply the solutions as per vendor instructions to all affected devices within expected timeframes (refer Patch Management):

Additional References