CVE-2026-11100: chromium-browser: Use after free in File Input

Severity: Critical

CVSS Score: 9.6

Use after free in File Input in Google Chrome on Mac prior to 149.0.7827.53 allowed a remote attacker who convinced a user to engage in specific UI gestures to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)