Skip to content
GoogleCVE-2026-87578

Google Chrome: use after free

High8.3CVE-2026-87578 · Published Sep 9, 2026 · updated Sep 10, 2026

Use after free in Receiver in Google Chrome prior to 153.0.8010.36 allowed an adjacent attacker to execute arbitrary code outside the sandbox via crafted network traffic. (Chromium security severity: High)

Google advisory

Affected versions

PackageAffectedFixed in
Chrome
Product
>= 153.0.8010.36, < 153.0.8010.36153.0.8010.36
Details and references

More Google advisories

All Google
Advisory
Google cel-go: excessive memory allocation
Medium6.9Sep 9
Google Chrome: clickjacking
Medium5.4Sep 9
Google Chrome: remote attacker could bypass system access restrictions
Medium5.4Sep 9
Google Chrome: use after free
Low3.1Sep 9
Google Chrome: information disclosure
Medium4.3Sep 9
Google Chrome: use after free
Critical9.6Sep 9

Critical advisories by email

Wednesdays: the week’s critical and high advisories in the AI and data stack, with the fixed versions. Only in weeks that have some.

Double opt-in. Unsubscribe any time.