CVE-2026-4447

HIGH

Google Chrome <146.0.7680.153 - RCE

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 2 public exploits for CVE-2026-4447. PoCs published by NetVanguard-cmd, blackhatlegend.

AI-analyzed exploit summary The repository claims to provide an exploit for CVE-2026-4447 but only includes a README with a download link to an external source (tinyurl.com). No actual exploit code or technical details are provided.

Description

Inappropriate implementation in V8 in Google Chrome prior to 146.0.7680.153 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)

Exploits (2)

nomisec SUSPICIOUS
by NetVanguard-cmd · poc
https://github.com/NetVanguard-cmd/CVE-2026-4447

The repository claims to provide an exploit for CVE-2026-4447 but only includes a README with a download link to an external source (tinyurl.com). No actual exploit code or technical details are provided.

Classification
Suspicious 95%
Attack Type
Rce
Complexity
Theoretical
Reliability
Theoretical
Target: Google Chrome before 146.0.7680.153
No auth needed
Prerequisites: crafted HTML page
devstral-2 · analyzed Apr 19, 2026 Full analysis →
nomisec SUSPICIOUS
by blackhatlegend · poc
https://github.com/blackhatlegend/CVE-2026-4447

The repository lacks actual exploit code and instead redirects users to an external download link (tinyurl.com). The README provides minimal technical details and reads like a sales pitch rather than legitimate security research.

Classification
Suspicious 95%
Attack Type
Rce
Complexity
Theoretical
Reliability
Theoretical
Target: Google Chrome prior to 146.0.7680.153
No auth needed
Prerequisites: crafted HTML page
devstral-2 · analyzed Apr 09, 2026 Full analysis →

Scores

CVSS v3 8.8
EPSS 0.0034
EPSS Percentile 25.1%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-693
Status published
Products (2)
google/chrome < 146.0.7680.153
Google/Chrome 146.0.7680.153
Published Mar 20, 2026
Tracked Since Mar 20, 2026