CVE-2026-91720: Google Chrome vulnerability
Published Sep 15, 2026
·Updated
Uninitialized resource in ANGLE in Google Chrome prior to 153.0.8010.47 allowed a remote attacker to read memory outside the sandbox via a crafted HTML page. (Chromium security severity: High)
Affected Software
2 affected components
Google Chrome<153.0.8010.47
ANGLE
Event History
Sep 15, 2026
CVE Published
via MITRE·08:41 PM
Data Sourced
via MITRE·08:41 PM
DescriptionWeakness
Frequently Asked Questions
1
Which Chrome versions need to be updated?
Google Chrome versions prior to 153.0.8010.47 are affected. Update Chrome to 153.0.8010.47 or later.
2
What does an attacker need to exploit this issue?
The attacker needs to convince a user to load a crafted HTML page remotely. Successful exploitation can allow memory to be read outside the sandbox.