CVE-2026-6306

ADVISORY - nist

Summary

Heap buffer overflow in PDFium in Google Chrome prior to 147.0.7727.101 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted PDF file. (Chromium security severity: High)

Common Weakness Enumeration (CWE)

ADVISORY - nist

Heap-based Buffer Overflow

ADVISORY - redhat

Out-of-bounds Write


NIST

CREATED

UPDATED

ADVISORY IDCVE-2026-6306
EXPLOITABILITY SCORE

2.8

EXPLOITS FOUND
-
COMMON WEAKNESS ENUMERATION (CWE)

CVSS SCORE

8.8high

Debian

CREATED

UPDATED

ADVISORY IDCVE-2026-6306
EXPLOITABILITY SCORE

-

EXPLOITS FOUND
-
COMMON WEAKNESS ENUMERATION (CWE)-
RATING UNAVAILABLE FROM ADVISORY

Red Hat

CREATED

UPDATED

ADVISORY IDCVE-2026-6306
EXPLOITABILITY SCORE

2.8

EXPLOITS FOUND
-
COMMON WEAKNESS ENUMERATION (CWE)

CVSS SCORE

9.6high