Type Confusion Vulnerability in Google Chrome Software
CVE-2026-91715

Currently unrated

Key Information:

Vendor

Google

Status
Vendor
CVE Published:
15 September 2026

What is CVE-2026-91715?

A type confusion vulnerability in the ServiceWorker component of Google Chrome prior to version 153.0.8010.47 enables remote attackers to exploit the flaw. By crafting a malicious HTML page, an attacker can execute arbitrary code within the context of the Chrome sandbox, potentially compromising the integrity of the user's session. This makes it imperative for users to update to the latest version to mitigate the risk of exploitation.

Affected Version(s)

Chrome 153.0.8010.47

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.