Server-Side Request Forgery in Google Chrome for Android
CVE-2026-93384

Currently unrated

Key Information:

Vendor

Google

Status
Vendor
CVE Published:
17 September 2026

What is CVE-2026-93384?

A server-side request forgery vulnerability exists in the Omnibox component of Google Chrome on Android prior to version 153.0.8010.52. This flaw enables a remote attacker to exploit social engineering techniques to bypass system access restrictions through specially crafted network traffic, potentially compromising user security and privacy.

Affected Version(s)

Chrome 153.0.8010.52

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.