CVE-2026-76039: Google Google Chrome for Android vulnerability
Published Aug 18, 2026
·Updated
Incorrect reference resolution in Core in Google Chrome on on Android prior to 151.0.7922.169 allowed a remote attacker leveraging social engineering to obtain sensitive information via a crafted HTML page. (Chromium security severity: High)
Affected Software
1 affected component
Google Google Chrome for Android<151.0.7922.169
Event History
Aug 18, 2026
CVE Published
via MITRE·08:31 PM
Data Sourced
via MITRE·08:31 PM
DescriptionWeakness
Frequently Asked Questions
1
Which deployments are exposed?
Google Chrome for Android is affected when it is running a version earlier than 151.0.7922.169. The issue is in Chrome Core and is triggered through a crafted HTML page.
2
What does an attacker need to exploit this issue?
An attacker must get a user to interact with a crafted HTML page; the advisory explicitly identifies social engineering as part of the attack scenario. The stated impact is disclosure of sensitive information to a remote attacker.