SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-87616

HIGH · CVSS 8.3 EPSS 0.39%

Source: NVD + CISA KEV + EPSS · Published 2026-09-09 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

Improper initialization in the Views component of Google Chrome on Windows versions prior to 153.0.8010.36 allows remote attackers to execute arbitrary code outside the sandbox by exploiting a compromised renderer process, typically through social engineering tactics. Organizations using affected versions of Chrome should prioritize updates to mitigate potential risks associated with this vulnerability. Users and administrators should remain vigilant against phishing attempts that could facilitate such attacks.

CVE
CVE-2026-87616
Severity
HIGH
CVSS
8.3
EPSS
0.39%
Windows Chrome

Original NVD Description

Improper initialization in Views in Google Chrome on on Windows prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process and leveraged social engineering to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)

Related CVEs

Other vulnerabilities affecting the same vendor(s)