CVE Wiki Pixee · CVE intelligence
← All CVEs

CVE-2026-13792

Critical · CVSS 9.6

Google Chrome — Use-After-Free sandbox escape

CVSS
9.6
nvd
EPSS
0.28%
20th pct
KEV
No
Class
kernel local
CWE-416

Description

Use after free in Touchbar in Google Chrome on Mac prior to 150.0.7871.47 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)

Search profile — drives PoC discovery

Symbols TouchbarTouchBarControllerNSTouchBarTouchBarManagersandbox escapecrafted HTML page
Keywords CVE-2026-13792Chrome Touchbar use after freeChromium Touchbar UAFChrome Mac sandbox escapeChrome 150.0.7871.47CWE-416 Chrome Touchbar
Versions: < 150.0.7871.47

References

Status: enriched · ingested 2026-07-02T18:00:43.000Z · profiled 2026-07-02T18:30:43.000Z