← Back to browse · API

CVE-2021-37973

Severity
CRITICAL
CVSS
9.6
EPSS
0.11735
Risk score
67.51
CISA KEV
Yes
PoC
No
Published
2021-10-08
Modified
2025-10-21
First seen
2026-08-07
Aliases
EUVD-2021-24446, GHSA-W2C8-QC3J-3XR5
Products
Google:Chrome unspecified <94.0.4606.61, Google:Chromium Portals
Sources
cisa.gov CVE-2021-37973
euvd EUVD-2021-24446

Description

Use after free in Portals in Google Chrome prior to 94.0.4606.61 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page.

References