Remote Code Execution Vulnerability in Google Chrome Service Worker
CVE-2026-91711

Currently unrated

Key Information:

Vendor

Google

Status
Vendor
CVE Published:
15 September 2026

What is CVE-2026-91711?

An out of bounds write vulnerability exists in the Service Worker component of Google Chrome, which could allow a remote attacker to execute arbitrary code within the sandbox. This is achieved through the manipulation of a specially crafted HTML page, leading to potential security breaches in user systems. Users are advised to update their browsers to the latest version to mitigate the risk.

Affected Version(s)

Chrome 153.0.8010.47

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.