SEPTEMBER 11, 2026
Live Feed
Back to database
Case File

CVE-2026-87618

HIGH · CVSS 8.3 EPSS 0.32%

Source: NVD + CISA KEV + EPSS · Published 2026-09-09 · Last synced 2026-09-11

CyberRota Analysis

AI-Generated

Google Chrome on Windows versions prior to 153.0.8010.36 is vulnerable due to incorrect reference resolution in the Storage component, which could allow a remote attacker to execute arbitrary code outside the sandbox by exploiting a crafted HTML page. Although the Chromium security severity is classified as low, organizations using affected versions should prioritize updates to mitigate potential risks associated with remote code execution. Users and administrators of Chrome on Windows should ensure they are running the latest version to protect against this vulnerability.

CVE
CVE-2026-87618
Severity
HIGH
CVSS
8.3
EPSS
0.32%
Windows Chrome

Original NVD Description

Incorrect reference resolution in Storage in Google Chrome on on Windows prior to 153.0.8010.36 allowed a remote attacker who had compromised the renderer process to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Low)

Related CVEs

Other vulnerabilities affecting the same vendor(s)