CVE-2026-19137
CVE-2026-19137: 1 tracked advisory record across Red Hat. Compare vendor sources.
Compare the source-linked records below. Ratings and product/version details belong to each advisory; they are not a single CVE-wide score or proof that every listed product is affected. How VulniPulse collects and checks evidence.
Vendor advisory comparison
Red Hat
1 advisory- Advisory severityCritical9.0
Critical [CVE-2026-19137] Google Chrome on Android: Sandbox escape via use after free in WebGL
CVE-2026-19137Source published Source updated
Use after free in WebGL in Google Chrome on Android prior to 151.0.7922.109 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Critical) This could potentially lead to a sandbox escape, allowing the attacker to gain elevated privileges or further control over the system. This flaw, while initially reported for Android, affects Chromium on Red Hat systems, enabling an attacker to gain further access beyond the browser's security boundaries. Exploitation requires user interaction with malicious web content. Red Hat severity: Important — CVSS 9 (CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:H). Weakness: CWE-825.
- Affected products in this advisory
- No product details extracted. Check the source bulletin.
- Source-reported affected versions
- < 151.0.7922.109
- Source-reported fixed versions
- No fixed-version detail extracted. This does not mean no fix exists.
- Mitigation guidance
- No mitigation guidance extracted; consult the source.
Android app · Google Play
Monitor future Red Hat CVEs from your phone.
Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.