Google has released Chrome 151.0.7922.109 to address multiple critical vulnerabilities.
CVE-2026-19172:
Use after free in Views in Google Chrome prior to
151.0.7922.109 allowed a remote attacker who had
compromised the renderer process to potentially perform a
sandbox escape via a crafted HTML page. (Chromium security
severity: Critical)
CVE-2026-19170:
Use after free in WebGL in Google Chrome on Android
prior to 151.0.7922.109 allowed a remote attacker to
potentially perform a sandbox escape via a crafted HTML
page. (Chromium security severity: Critical)
CVE-2026-19157:
Out of bounds write in ANGLE in Google Chrome on Android
prior to 151.0.7922.109 allowed a remote attacker to
potentially perform a sandbox escape via a crafted HTML
page. (Chromium security severity: Critical)
CVE-2026-19154:
Use after free in Skia in Google Chrome on Android prior
to 151.0.7922.109 allowed a remote attacker who had
compromised the renderer process to potentially perform a
sandbox escape via a crafted HTML page. (Chromium security
severity: Critical)
CVE-2026-19149:
Use after free in Aura in Google Chrome on Linux prior to
151.0.7922.109 allowed a remote attacker to potentially
perform a sandbox escape via a crafted HTML page.
(Chromium security severity: Critical)
CVE-2026-19137:
Use after free in WebGL in Google Chrome on Android prior
to 151.0.7922.109 allowed a remote attacker who had
compromised the renderer process to potentially perform a
sandbox escape via a crafted HTML page. (Chromium security
severity: Critical)