Information Disclosure Vulnerability in Google Chrome
CVE-2026-106390

Currently unrated

Key Information:

Vendor

Google

Status
Vendor
CVE Published:
6 October 2026

What is CVE-2026-106390?

A critical flaw exists in the SanitizerAPI of Google Chrome that allows remote attackers to exploit the browser by crafting a malicious HTML page. This vulnerability enables unauthorized access to sensitive information, presenting a significant risk to users. Users of Google Chrome versions prior to 155.0.8059.39 are urged to update their browsers to mitigate potential data leaks and enhance their security posture.

Affected Version(s)

Chrome 155.0.8059.39

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.