Multiple security vulnerabilities have been identified in Google Chrome, affecting versions prior to 151.0.7922.173. The August 20, 2026 Stable Channel update addresses seven vulnerabilities involving use-after-free, privilege elevation, incorrect authorization, a race condition, buffer overflow, and improper resource control. Successful exploitation could allow remote attackers to execute arbitrary code inside or outside the browser sandbox, bypass security restrictions, or compromise affected systems. Google reported no exploitation in the wild for these vulnerabilities at the time of disclosure.
• CVE-2026-76017 with a CVSS score of 8.8 – A critical use-after-free vulnerability in the Chromoting component of Google Chrome allows a remote attacker to execute arbitrary code outside the browser sandbox through crafted network traffic. The vulnerability is classified as CWE-416 (Use After Free) and affects Chrome versions prior to 151.0.7922.173.[/subscribe_to_unlock_form]
Multiple security vulnerabilities have been identified in Google Chrome, affecting versions prior to 151.0.7922.173. The August 20, 2026 Stable Channel update addresses seven vulnerabilities involving use-after-free, privilege elevation, incorrect authorization, a race condition, buffer overflow, and improper resource control. Successful exploitation could allow remote attackers to execute arbitrary code inside or outside the browser sandbox, bypass security restrictions, or compromise affected systems. Google reported no exploitation in the wild for these vulnerabilities at the time of disclosure.
• CVE-2026-76017 with a CVSS score of 8.8 – A critical use-after-free vulnerability in the Chromoting component of Google Chrome allows a remote attacker to execute arbitrary code outside the browser sandbox through crafted network traffic. The vulnerability is classified as CWE-416 (Use After Free) and affects Chrome versions prior to 151.0.7922.173.[emaillocker id="1283"]
• CVE-2026-76021 with a CVSS score of 8.8 – A high-severity use-after-free vulnerability in the DOM component of Google Chrome allows a remote attacker to execute arbitrary code inside the browser sandbox by convincing a victim to access a specially crafted HTML page. The vulnerability is classified as CWE-416 (Use After Free) and affects Chrome versions prior to 151.0.7922.173.
We recommend you to refer below mention link: https://chromereleases.googleblog.com/2026/08/stable-channel-update-for-desktop_0404570826.html
The following reports contain further technical details:
[/emaillocker]