CVE-2026-87490: Infoleak
Published Sep 9, 2026
·Updated
Information leak in Transactions Platform in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to obtain sensitive information via a crafted HTML page. (Chromium security severity: Low)
Affected Software
1 affected component
Google Google Chrome<153.0.8010.36
Event History
Sep 9, 2026
CVE Published
via MITRE·12:10 AM
Data Sourced
via MITRE·12:10 AM
DescriptionWeakness
Frequently Asked Questions
1
What does an attacker need to exploit this issue?
The attacker needs to get a user to load a crafted HTML page remotely. The available information does not indicate that local access, authentication, or user interaction beyond visiting the page is required.
2
Which Chrome versions should be treated as affected?
Google Chrome versions prior to 153.0.8010.36 are affected. Updating to 153.0.8010.36 or later addresses the reported issue.
3
What information could be exposed?
The vulnerability is described as allowing disclosure of sensitive information. The available data does not specify the type, source, or scope of information that may be leaked.