← Back to browse · API

CVE-2023-2136

Severity
CRITICAL
CVSS
9.6
EPSS
0.05739
Risk score
65.41
CISA KEV
Yes
PoC
No
Published
2023-04-19
Modified
2025-10-21
First seen
2026-08-07
Aliases
EUVD-2023-33656, GHSA-63J8-Q3XX-G3C2
Products
Google:Chrome 112.0.5615.137 <112.0.5615.137, Google:Chromium Skia
Sources
cisa.gov CVE-2023-2136
euvd EUVD-2023-33656

Description

Integer overflow in Skia in Google Chrome prior to 112.0.5615.137 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)

References