CVE-2022-4135CISA KEVEPSS p98.1%

CVE-2022-4135Google Chromium GPU Heap Buffer Overflow Vulnerability

Google / Chromium GPU

Description

Google Chromium GPU contains a heap buffer overflow vulnerability that allows a remote attacker, who has compromised the renderer process, to potentially perform a sandbox escape via a crafted HTML page. This vulnerability could affect multiple web browsers that utilize Chromium, including, but not limited to, Google Chrome, Microsoft Edge, and Opera.

Scoring

CVSS 9.6 ()
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H
EPSS31.86% probability of exploitation · percentile 98.1% · 2026-08-03T12:00:16Z
Last modified2026-06-17

CISA KEV entry

Added to KEV: 2022-11-28

(incoming)1

TypeTargetConfidenceTier
KEVEntryGoogle Chromium GPU Heap Buffer Overflow Vulnerabilitykev-cve-2022-41350%live

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

CVE
Google Chromium V8 Heap Buffer Overflow Vulnerability
CVE
CVE-2025-11205
CVE
Google Chromium WebGL Use-After-Free Vulnerability
CVE
CVE-2026-10898
CVE
Google Chromium Race Condition Vulnerability
CVE
Google Chromium V8 Use-After-Free Vulnerability
Sourced from NVD + CISA KEV + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.