CVE-2026-87600: Input Validation
Improper input validation in Safebrowsing in Google Chrome on on Android prior to 153.0.8010.36 allowed a remote attacker leveraging social engineering to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Medium)
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Google Chrome (Android)to a version that resolves this vulnerability.Fixed in 153.0.8010.36
Event History
Frequently Asked Questions
Who is exposed to this issue?
The affected population is Google Chrome on Android installations running versions earlier than 153.0.8010.36. Exploitation is described as remote and depends on social engineering.
What does an attacker need to exploit it?
An attacker needs to persuade a user to interact with a crafted HTML page. The issue is in Safe Browsing input validation and can be used to bypass system access restrictions.
What version resolves the issue?
Google Chrome on Android version 153.0.8010.36 or later is not identified as affected by the provided information.