Remote Code Execution Risk in Google Chrome on Android
CVE-2026-8571

Currently unrated

Key Information:

Vendor

Google

Status
Vendor
CVE Published:
14 May 2026

What is CVE-2026-8571?

A vulnerability has been identified in Google Chrome on Android, where insufficient policy enforcement in the GPU component could allow a remote attacker, who has compromised the renderer process, to execute a sandbox escape through a specially crafted HTML page. This could potentially expose users to unauthorized access and exploits if the browser is running an affected version.

Affected Version(s)

Chrome 148.0.7778.168

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.