CVE-2026-13879
MEDIUM severity · CVSS 6.5 · Use-after-free
6.5CVSS MEDIUM
Summary
Use after free in Bluetooth in Google Chrome prior to 150.0.7871.47 allowed an attacker on the local network segment to obtain potentially sensitive information from process memory via a malicious peripheral. (Chromium security severity: Medium)
Impact & exploitability
Attack vectorAdjacent
Attack complexityLow
Privileges requiredNone
User interactionNone
Confidentiality impactHigh
Integrity impactNone
Availability impactNone
Exploit probability (EPSS)0%
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Affected products we track (3)
Recommendation
Apply the vendor fix in your normal patch cycle. Open any affected product above for its exact safe version.