Code Injection Vulnerability in Google Chrome by Google
CVE-2026-91719

Currently unrated

Key Information:

Vendor

Google

Status
Vendor
CVE Published:
15 September 2026

What is CVE-2026-91719?

A code injection vulnerability exists in Google Chrome versions prior to 153.0.8010.47, allowing remote attackers to exploit a flaw in processing XML. By delivering a specially crafted HTML page, attackers can bypass web origin policy, which could lead to unauthorized access to sensitive information. This vulnerability highlights the importance of keeping web browsers up-to-date to mitigate potential security risks.

Affected Version(s)

Chrome 153.0.8010.47

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.