CVE-2026-0908
HIGHGoogle Chrome < 144.0.7559.59 - Use-After-Free in ANGLE via Crafted HTML Page
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2026-0908. PoCs published by lylzjnqe.
AI-analyzed exploit summary This repository contains a functional exploit for CVE-2026-0908, targeting a Chrome 0-day RCE vulnerability. It includes scripts to disable ASLR, copy Mojo JS bindings, and patches for the renderer and V8 engine, indicating a sophisticated exploit chain.
Description
Use after free in ANGLE in Google Chrome prior to 144.0.7559.59 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Low)
Exploits (1)
This repository contains a functional exploit for CVE-2026-0908, targeting a Chrome 0-day RCE vulnerability. It includes scripts to disable ASLR, copy Mojo JS bindings, and patches for the renderer and V8 engine, indicating a sophisticated exploit chain.
References (2)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H