Blink — Cyber Threats, Attacks & Incidents

Threat entity extracted from intelligence sources

Frequency
12
occurrences
First Seen
October 29, 2025
Last Seen
July 1, 2026

Blink is a technology platform tracked across 12 threat clusters and 12 intelligence report mentions on ThreatCluster. First observed October 29, 2025; most recent activity July 1, 2026.

Overview

Blink is the open-source web rendering engine used by Chromium-based browsers and applications, handling layout, rendering, and JavaScript execution. As a core web platform component, security flaws in Blink/Chromium can enable remote code execution, crashes, or sandbox escapes affecting large user bases. The recent coverage centers on Chromium/CEF vulnerabilities and patching efforts, underscoring Blink’s critical role in web security.

Related Threat Clusters

  • CVE-2026-2441: Zero-Day CSS Vulnerability in Chromium-Based Browsers

    CVE-2026-2441 is a zero-day CSS vulnerability affecting all Chromium-based browsers, allowing attackers to exploit a use-after-free condition in the Blink rendering engine. This vulnerability enables the theft of…

    3 articles · Updated February 21, 2026
  • Critical Use After Free and Integer Overflow Vulnerabilities in Fedora Chromium

    On June 25, 2026, three critical vulnerabilities were published affecting Chromium version 149.0.7827.200, specifically CVE-2026-13281 (Integer overflow in Mojo), CVE-2026-13282 (Use after free in Payments), and…

    2 articles · Updated July 1, 2026
  • TierOne Forum Launches $10,000 Contest on Vulnerability Exploitation

    The TierOne dark web forum has initiated an article contest offering a total prize pool of $10,000 for submissions focused on vulnerability exploitation. The contest runs from April 13, 2026, to May 14, 2026, with…

    2 articles · Updated April 16, 2026
  • Multiple CVEs Identified in Chromium for Fedora 42 and 43

    Fedora has released updates for Chromium, addressing several vulnerabilities including CVE-2026-0899, which involves out-of-bounds memory access in V8. Other issues include inappropriate implementations and insufficient…

    6 articles · Updated January 18, 2026
  • Critical Race Condition in Chromium Affecting Fedora 43

    A critical race condition vulnerability, identified as CVE-2026-1220, has been discovered in Chromium, impacting users of Fedora 43. The vulnerability affects the V8 engine of the browser, prompting an urgent update to…

    77 articles · Updated January 27, 2026
  • High CVEs Identified in Chromium Affecting Fedora Users

    Two high-severity vulnerabilities, CVE-2025-14765 and CVE-2025-14766, have been identified in Chromium, impacting Fedora users. CVE-2025-14765 involves a use-after-free issue in WebGPU, while CVE-2025-14766 relates to…

    4 articles · Updated December 20, 2025
  • Multiple High-Risk Vulnerabilities in Chromium and CEF Disclosed

    Several high-risk vulnerabilities have been identified in Chromium and its embeddable version, CEF, affecting various implementations. Key issues include type confusion and inappropriate implementations in the V8…

    15 articles · Updated November 26, 2025
  • Multiple High Severity Vulnerabilities in Chromium and CEF Identified

    A series of high severity vulnerabilities have been reported in Chromium and its embeddable version, CEF. Key issues include inappropriate implementations and out-of-bounds writes affecting various components, with CVEs…

    9 articles · Updated November 19, 2025
  • Critical Exploit Crashes Chromium Browsers Worldwide

    A newly discovered exploit named Brash can crash Chromium-based browsers, including Google Chrome and Microsoft Edge, by overloading the tab title API. Disclosed by security researcher Jose Pino, this vulnerability…

    2 articles · Updated October 31, 2025
  • Rogue MCP Servers Exploit Vulnerability in Cursor Code Editor

    Security researchers have identified a vulnerability in Cursor, an AI-powered code editor, that allows rogue Model Context Protocol (MCP) servers to inject malicious code into its internal browser. This exploit can…

    2 articles · Updated November 17, 2025

Recent Intelligence Reports

  • Fedora 43 Chromium Important Use After Free Issues CVE-2026 — Linuxsecurity · July 1, 2026
  • Fedora 44 Chromium Important Integer Overflow & Free Issues 2026 — Linuxsecurity · June 29, 2026
  • Dark Web Article Contest Offers $10,000 for Exploit Writing on TierOne Forum — Thecyberexpress · April 14, 2026
  • Zero-Day CSS: Deconstructing CVE-2026-2441 Security Vulnerability — Sitepoint · February 21, 2026
  • Fedora 43 chromium Update Heap Overflow Type Confusion CVE-2026 — Linuxsecurity · February 8, 2026
  • Critical Fix for Race Condition in Fedora 42 Chromium CVE-2026 — Linuxsecurity · January 28, 2026
  • Fedora 42: Chromium Update FEDORA-2026-3736e2ff1a CVEs 2026-0899 2026 — Linuxsecurity · January 18, 2026
  • Fedora 42: Chromium High CVE-2025 — Linuxsecurity · December 20, 2025

CVSS v3.1 Breakdown