Google Chrome
Stable Channel Update for Desktop — 151.0.7922.71/.72
151.0.7922.71/.72 Jul 29, 2026 Source: Vendor
Imported by the Chrome release catcher from https://chromereleases.googleblog.com/2026/07/stable-channel-update-for-desktop_0887107924.html. 370 security entries listed. Draft — review before publishing.
Source of record
The credited names below are quoted verbatim from the vendor's own advisory:
https://chromereleases.googleblog.com/2026/07/stable-channel-update-for-desktop_0887107924.html
Are you credited here?
Sign in and claim your line: it is yours immediately, no review queue.
The name the vendor printed stays next to your handle for anyone to check against the advisory above,
and any member who thinks a claim is wrong can refute it.
Credited
372 lines
Showing 301–350 of 372 · page 7 of 8
CVE-2026-17949
BR2026-0000-002118
GPU
unclaimed
Low — Uninitialized Use in GPU (reported 2026-05-27)
Credited as Google
CVE-2026-17950
BR2026-0000-002119
Safebrowsing
unclaimed
Low — Policy bypass in Safebrowsing (reported 2026-05-27)
Credited as Google
CVE-2026-17951
BR2026-0000-002120
WebRTC
unclaimed
Low — Heap buffer overflow in WebRTC (reported 2026-05-27)
Credited as Google
CVE-2026-17952
BR2026-0000-002121
V8
unclaimed
Low — Inappropriate implementation in V8 (reported 2026-05-28)
Credited as Google
CVE-2026-17953
BR2026-0000-002122
WebView
unclaimed
Low — Insufficient policy enforcement in WebView (reported 2026-05-28)
Credited as Google
CVE-2026-17954
BR2026-0000-002123
MHTML
unclaimed
Low — Policy bypass in MHTML (reported 2026-05-28)
Credited as Google
CVE-2026-17955
BR2026-0000-002124
Payments
unclaimed
Low — Insufficient validation of untrusted input in Payments (reported 2026-05-28)
Credited as Google
CVE-2026-17956
BR2026-0000-002125
Scheduling
unclaimed
Low — Inappropriate implementation in Scheduling (reported 2026-05-28)
Credited as Google
CVE-2026-17957
BR2026-0000-002126
CORS
unclaimed
Low — Inappropriate implementation in CORS (reported 2026-05-28)
Credited as Google
CVE-2026-17958
BR2026-0000-002127
Views
unclaimed
Low — Inappropriate implementation in Views (reported 2026-05-28)
Credited as Google
CVE-2026-17959
BR2026-0000-002128
Network
unclaimed
Low — Inappropriate implementation in Network (reported 2026-05-28)
Credited as Google
CVE-2026-17960
BR2026-0000-002129
Chrome for iOS
unclaimed
Low — Inappropriate implementation in Chrome for iOS (reported 2026-05-28)
Credited as Google
CVE-2026-17961
BR2026-0000-002130
Session
unclaimed
Low — Inappropriate implementation in Session (reported 2026-05-29)
Credited as Google
CVE-2026-17962
BR2026-0000-002131
Blink
unclaimed
Low — Inappropriate implementation in Blink (reported 2026-05-29)
Credited as Google
CVE-2026-17963
BR2026-0000-002132
SVG
unclaimed
Low — Inappropriate implementation in SVG (reported 2026-05-29)
Credited as Google
CVE-2026-17964
BR2026-0000-002133
UI
unclaimed
Low — Incorrect security UI in UI (reported 2026-05-29)
Credited as Google
CVE-2026-17965
BR2026-0000-002134
Chrome for iOS
unclaimed
Low — Incorrect security UI in Chrome for iOS (reported 2026-05-30)
Credited as Google
CVE-2026-17966
BR2026-0000-002135
Views
unclaimed
Low — Inappropriate implementation in Views (reported 2026-05-30)
Credited as Google
CVE-2026-17967
BR2026-0000-002136
Chrome for iOS
unclaimed
Low — Use after free in Chrome for iOS (reported 2026-05-30)
Credited as Google
CVE-2026-17968
BR2026-0000-002137
WebXR
unclaimed
Low — Uninitialized Use in WebXR (reported 2026-05-31)
Credited as Google
CVE-2026-17969
BR2026-0000-002138
Passwords
unclaimed
Low — Inappropriate implementation in Passwords (reported 2026-06-01)
Credited as Google
CVE-2026-17970
BR2026-0000-002139
Passwords
unclaimed
Low — Insufficient validation of untrusted input in Passwords (reported 2026-06-01)
Credited as Google
CVE-2026-17971
BR2026-0000-002140
Frame
unclaimed
Low — Inappropriate implementation in Frame (reported 2026-06-01)
Credited as Google
CVE-2026-17972
BR2026-0000-002141
Chrome for iOS
unclaimed
Low — Inappropriate implementation in Chrome for iOS (reported 2026-06-02)
Credited as Google
CVE-2026-17973
BR2026-0000-002142
Views
unclaimed
Low — Inappropriate implementation in Views (reported 2026-06-02)
Credited as Google
CVE-2026-17974
BR2026-0000-002143
DevTools
unclaimed
Low — Insufficient policy enforcement in DevTools (reported 2026-06-02)
Credited as Google
CVE-2026-17975
BR2026-0000-002144
IME
unclaimed
Low — Inappropriate implementation in IME (reported 2026-06-02)
Credited as Google
CVE-2026-17976
BR2026-0000-002145
Extensions
unclaimed
Low — Policy bypass in Extensions (reported 2026-06-03)
Credited as Google
CVE-2026-17977
BR2026-0000-002146
CSS
unclaimed
Low — Policy bypass in CSS (reported 2026-06-03)
Credited as Google
CVE-2026-17978
BR2026-0000-002147
WebCodecs
unclaimed
Low — Side-channel information leakage in WebCodecs (reported 2026-06-03)
Credited as Google
CVE-2026-17979
BR2026-0000-002148
V8
unclaimed
Low — Race in V8 (reported 2026-06-04)
Credited as Google
CVE-2026-17980
BR2026-0000-002149
UI
unclaimed
Low — Inappropriate implementation in UI (reported 2026-06-03)
Credited as Google
CVE-2026-17981
BR2026-0000-002150
Blink
unclaimed
Low — Inappropriate implementation in Blink (reported 2026-06-03)
Credited as Google
CVE-2026-17982
BR2026-0000-002151
Cast
unclaimed
Low — Insufficient validation of untrusted input in Cast (reported 2026-06-04)
Credited as Google
CVE-2026-17983
BR2026-0000-002152
Global Media Controls
unclaimed
Low — Incorrect security UI in Global Media Controls (reported 2026-06-04)
Credited as Google
CVE-2026-17984
BR2026-0000-002153
Browser
unclaimed
Low — Inappropriate implementation in Browser (reported 2026-06-04)
Credited as Google
CVE-2026-17985
BR2026-0000-002154
Speech
unclaimed
Low — Insufficient policy enforcement in Speech (reported 2026-06-04)
Credited as Google
CVE-2026-17986
BR2026-0000-002155
Bluetooth
unclaimed
Low — Insufficient policy enforcement in Bluetooth (reported 2026-06-04)
Credited as Google
CVE-2026-17987
BR2026-0000-002156
Notifications
unclaimed
Low — Insufficient validation of untrusted input in Notifications (reported 2026-06-04)
Credited as Google
CVE-2026-17988
BR2026-0000-002157
Navigation
unclaimed
Low — Insufficient validation of untrusted input in Navigation (reported 2026-06-04)
Credited as Google
CVE-2026-17989
BR2026-0000-002158
V8
unclaimed
Low — Type Confusion in V8 (reported 2026-06-04)
Credited as Google
CVE-2026-17990
BR2026-0000-002159
WebAuthn
unclaimed
Low — Insufficient validation of untrusted input in WebAuthn (reported 2026-06-04)
Credited as Google
CVE-2026-17991
BR2026-0000-002160
AI
unclaimed
Low — Insufficient validation of untrusted input in AI (reported 2026-06-04)
Credited as Google
CVE-2026-17992
BR2026-0000-002161
Skia
unclaimed
Low — Uninitialized Use in Skia (reported 2026-06-05)
Credited as Google
CVE-2026-17993
BR2026-0000-002162
Updater
unclaimed
Low — Race in Updater (reported 2026-06-05)
Credited as Google
CVE-2026-17994
BR2026-0000-002163
Media
unclaimed
Low — Inappropriate implementation in Media (reported 2026-06-06)
Credited as Google
CVE-2026-17995
BR2026-0000-002164
Dawn
unclaimed
Low — Out of bounds read in Dawn (reported 2026-06-07)
Credited as sm1ee
CVE-2026-17995
BR2026-0000-002165
Dawn
unclaimed
Low — Out of bounds read in Dawn (reported 2026-06-07)
Credited as ksw9722
CVE-2026-17996
BR2026-0000-002166
Browser
unclaimed
Low — Inappropriate implementation in Browser (reported 2026-06-08)
Credited as Google
CVE-2026-17997
BR2026-0000-002167
Passwords
unclaimed
Low — Inappropriate implementation in Passwords (reported 2026-06-08)
Credited as Google