logo

Google fixes Chrome zero-day with in-the-wild exploit (CVE-2026-5281)

ID: d5e1b49b-0c23-5ed9-9f93-6d50028353b2

STIX ID: report--d5e1b49b-0c23-5ed9-9f93-6d50028353b2

Feed Name: Help Net Security

Threat Score
85/100

Date Published: 2026-04-01

Date Updated: 2026-04-28

Author: Zeljka Zorz

...
...

Google released a Chrome security update addressing CVE-2026-5281, a use-after-free vulnerability in Dawn (WebGPU) that has an in-the-wild exploit; affected Chrome versions prior to v146.0.7680.177/178 on various platforms are patched and users are advised to update or restart to apply the fix. The report also references other Dawn/WebGL fixes (CVE-2026-4675, CVE-2026-4676, CVE-2026-5284) reported by the same bug hunter and notes that other Chromium-based browsers are deploying or preparing fixes.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.