Skip to main content

Dawn vulnerabilities

1 published alerts for Google Dawn.

Actively exploited (KEV)

CVE-2026-5281

Google Dawn Use-After-Free Vulnerability

Google Dawn is listed in CISA's Known Exploited Vulnerabilities catalog (CVE-2026-5281). Google Dawn contains an use-after-free vulnerability that could allow a remote attacker who had compromised the renderer process to execute arbitrary code via a crafted HTML page. This vulnerability could affect multiple Chromium-based products including, but not limited to, Google Chrome, Microsoft Edge, and Opera. CISA remediation due date: 2026-04-15. If you need help checking exposure, call (864) 335-9223.