2026年9月10日星期四

Google Chrome Multiple Vulnerabilities

Google Chrome Multiple Vulnerabilities

Release Date: 10 Sep 2026

Multiple vulnerabilities were identified in Google Chrome. A remote attacker could exploit some of these vulnerabilities to trigger denial of service condition, elevation of privilege, security restriction bypass, spoofing, sensitive information disclosure and remote code execution on the targeted system.

 

Note: 

CVE-2026-87491 is being exploited in the wild. A remote attacker could exploit this vulnerability to execute arbitrary code inside the sandbox via a crafted HTML page. Hence, the risk level is rated as Extremely High Risk.


Impact

  • Remote Code Execution
  • Denial of Service
  • Information Disclosure
  • Security Restriction Bypass
  • Elevation of Privilege
  • Spoofing

System / Technologies affected

  • Google Chrome prior to 153.0.8010.36 (Linux)
  • Google Chrome prior to 153.0.8010.36/.37 (Mac)
  • Google Chrome prior to 153.0.8010.36/.37 (Windows)

Solutions

Before installation of the software, please visit the software vendor web-site for more details.

Apply fixes issued by the vendor:

  • Google Chrome 153.0.8010.36 (Linux) or later
  • Google Chrome 153.0.8010.36/.37 (Mac) or later
  • Google Chrome 153.0.8010.36/.37 (Windows) or later

Vulnerability Identifier


Source


Related Link

沒有留言:

發佈留言

MongoDB 多個漏洞

MongoDB 多個漏洞 發佈日期: 2026年09月10日 於 MongoDB 發現多個漏洞。遠端攻擊者可利用這些漏洞,於目標系統觸發阻斷服務狀況、權限提升、彷冒、遠端執行任意程式碼、洩露敏感資料、資料篡改及繞過保安限制。 影響 阻斷服務 資料洩露 遠端執行程式碼 繞過保安限制...