Type Confusion Vulnerability in Google Chrome Affecting ServiceWorker
CVE-2026-91709

Currently unrated

Key Information:

Vendor

Google

Status
Vendor
CVE Published:
15 September 2026

What is CVE-2026-91709?

A type confusion vulnerability exists in the ServiceWorker component of Google Chrome prior to version 153.0.8010.47, enabling a remote attacker to exploit this weakness. Through a specially crafted HTML page, an attacker can execute arbitrary code within the Chrome sandbox environment, potentially compromising the security of affected systems. Users are urged to update their browsers to the latest version to mitigate this risk.

Affected Version(s)

Chrome 153.0.8010.47

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.