CVE-2019-5869 is a use-after-free vulnerability in Google Chrome's Blink rendering engine, affecting versions prior to 76.0.3809.132. This flaw could allow a remote attacker to achieve heap corruption by enticing a user to visit a specially crafted HTML page. Rated as Medium severity (CVSS 6.5), it requires user interaction and could lead to high availability impact, though confidentiality and integrity are not directly affected. There is no evidence of active exploitation, nor are public exploit modules or KEV entries available, and community discussion is minimal.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 76.0.3809.132CPE matchmatch criteria | cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.