CVE-2015-6777: Google Chrome
High severity, CVSS 7.5. EPSS: 1.6% chance of exploitation in the next 30 days.
Use-after-free vulnerability in the ContainerNode::notifyNodeInsertedInternal function in WebKit/Source/core/dom/ContainerNode.cpp in the DOM implementation in Google Chrome before 47.0.2526.73 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to DOMCharacterDataModified events for certain detached-subtree insertions.
Affected products
- Google Chrome: up to and including 46.0.2490.86
Published 2015-12-06. Last modified 2026-06-17.