CRITICAL
CVE-2026-91729
CVSS
9.6
Description
Use after free in DigitalCredentials in Google Chrome prior to 153.0.8010.47 allowed a remote attacker leveraging social engineering to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)
Weakness (CWE)
CWE-416
Use After Free
EPSS Score
0.34%
Probability of exploitation in next 30 days
27.4th percentile
References
Base CVE data derived from NVD (public domain). Enrichment by
dbcve.org
(CC-BY-4.0). Fetched via API.