Skip to content
GoogleCVE-2026-76035

Google Chrome: remote code execution

Critical9.6CVE-2026-76035 · Published Aug 18, 2026 · updated Aug 24, 2026

Inappropriate implementation in Media in Google Chrome on on Mac prior to 151.0.7922.169 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)

Google advisory

Affected versions

PackageAffectedFixed in
Chrome
Product
>= 151.0.7922.169, < 151.0.7922.169151.0.7922.169
Details and references

More Google advisories

All Google
Advisory
Google Chrome: use after free
High8.8Aug 18
Google Chrome: information disclosure
Medium4.3Aug 18
Google Chrome: uninitialized resource
Low3.1Aug 18
Google Chrome: remote code execution
High8.8Aug 18
Google Chrome: race condition
High8.3Aug 18
Google Chrome: use after free
High8.8Aug 18

Critical advisories by email

Wednesdays: the week’s critical and high advisories in the AI and data stack, with the fixed versions. Only in weeks that have some.

Double opt-in. Unsubscribe any time.