Remote Code Execution Vulnerability in Google Chrome
CVE-2026-91730

Currently unrated

Key Information:

Vendor

Google

Status
Vendor
CVE Published:
15 September 2026

What is CVE-2026-91730?

In Google Chrome versions prior to 153.0.8010.47, an incomplete cleanup issue in the GetUserMedia component allows a remote attacker, who successfully compromises the renderer process, to exploit social engineering techniques to gain access to cross-origin data via a specially crafted HTML page. This vulnerability emphasizes the significance of maintaining up-to-date software to mitigate potential security risks.

Affected Version(s)

Chrome 153.0.8010.47

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.