CVE-2026-2441

HIGH KEV

Google Chrome <145.0.7632.75 - Use After Free

Title source: llm

Description

Use after free in CSS in Google Chrome prior to 145.0.7632.75 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)

Exploits (10)

github WRITEUP 12 stars
by huseyinstif · htmlpoc
https://github.com/huseyinstif/CVE-2026-2441-PoC
github SUSPICIOUS 10 stars
by XiaomingX · pythonpoc
https://github.com/XiaomingX/data-cve-poc-py-v1/tree/main/2026/CVE-2026-2441
nomisec SUSPICIOUS 3 stars
by b1gchoi · poc
https://github.com/b1gchoi/CVE-2026-2441_POC
nomisec SUSPICIOUS
by jermaine22sei · poc
https://github.com/jermaine22sei/CVE-2026-2441
nomisec WRITEUP
by D3b0j33t · poc
https://github.com/D3b0j33t/CVE-2026-2441-PoC
nomisec SUSPICIOUS
by fartlover37 · poc
https://github.com/fartlover37/CVE-2026-2441-PoC
nomisec STUB
by atiilla · dos
https://github.com/atiilla/CVE-2026-2441_PoC
nomisec SUSPICIOUS
by washingtonmaister · poc
https://github.com/washingtonmaister/CVE-2026-2441
nomisec WRITEUP
by theemperorspath · client-side
https://github.com/theemperorspath/CVE-2026-2441-PoC
nomisec SUSPICIOUS
by NetVanguard-cmd · poc
https://github.com/NetVanguard-cmd/CVE-2026-2441

Scores

CVSS v3 8.8
EPSS 0.0014
EPSS Percentile 33.3%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Exploitation Intel

CISA KEV 2026-02-17
VulnCheck KEV 2026-02-13
ENISA EUVD EUVD-2026-6071

Classification

CWE
CWE-416
Status published

Affected Products (1)

google/chrome < 145.0.7632.75

Timeline

Published Feb 13, 2026
KEV Added Feb 17, 2026
Tracked Since Feb 18, 2026