CVE-2026-76023: Improper resource control in Linux Toolkit Theming
Published Aug 11, 2026
·Updated
Improper resource control in Linux Toolkit Theming in Google Chrome prior to 151.0.7922.173 allowed a remote attacker who had compromised the renderer process to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)
Credit
Keita Sode(SYZD Research), Daisuke Hatakeyama(SYZD Research)
Affected Software
1 affected componentFixes available
Google Chrome<151.0.7922.173
151.0.7922.173
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 151.0.7922.173
Event History
Aug 11, 2026
CVE Published
12:00 AM
Data Sourced
12:00 AM
SeverityWeaknessAffected Software
Aug 20, 2026
CVE Published
via MITRE·08:51 PM
Data Sourced
via MITRE·08:51 PM
DescriptionWeakness
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
1
Which product is identified as affected?
The record identifies Google Chrome from Google. No affected or fixed version numbers are provided.
2
Is a vendor update reference available?
Yes. The record references a Google Chrome Stable Channel Update for Desktop published on 2026-08-11.