Google Chrome
Stable Channel Update for Desktop
5331721155527697718 Aug 25, 2026 Source: Vendor
Imported by the Chrome release catcher from https://chromereleases.googleblog.com/2026/08/stable-channel-update-for-desktop_0256176589.html. 327 security entries listed. Draft. Review before publishing.
Source of record
The credited names below are quoted verbatim from the vendor's own advisory:
https://chromereleases.googleblog.com/2026/08/stable-channel-update-for-desktop_0256176589.html
Are you credited here?
Sign in and claim your line: it is yours immediately, no review queue.
The name the vendor printed stays next to your handle for anyone to check against the advisory above,
and any member who thinks a claim is wrong can refute it.
Credited
330 lines
Showing 251–300 of 330 · page 6 of 7
CVE-2026-79004
BR2026-0000-009141
Media
unclaimed
Medium: Out of bounds read in Media (reported 2026-07-19)
Credited as Google
CVE-2026-79182
BR2026-0000-009142
Media
unclaimed
Medium: Improper input validation in Media (reported 2026-07-19)
Credited as Google
CVE-2026-79185
BR2026-0000-009143
DOM
unclaimed
Medium: Information leak in DOM (reported 2026-07-19)
Credited as avlidienbrunn
CVE-2026-79073
BR2026-0000-009144
Parser
unclaimed
Medium: Improper state validation in Parser (reported 2026-07-20)
Credited as Google
CVE-2026-79266
BR2026-0000-009145
DevTools
unclaimed
Medium: Use after free in DevTools (reported 2026-07-21)
Credited as Google
CVE-2026-79025
BR2026-0000-009146
Workers
unclaimed
Medium: Improper input validation in Workers (reported 2026-07-22)
Credited as Google
CVE-2026-79141
BR2026-0000-009147
Browser
unclaimed
Medium: Incorrect authorization in Browser (reported 2026-07-25)
Credited as M. Fauzan Wijaya (Gh05t666nero)
CVE-2026-78974
BR2026-0000-009148
Linux Toolkit Theming
unclaimed
Low: UI misrepresentation in Linux Toolkit Theming (reported 2026-04-16)
Credited as Francesco Topol
CVE-2026-79055
BR2026-0000-009149
Sharing
unclaimed
Low: Information leak in Sharing (reported 2026-03-28)
Credited as Google
CVE-2026-79263
BR2026-0000-009150
Extensions
unclaimed
Low: Race condition in Extensions (reported 2026-03-28)
Credited as Google
CVE-2026-79124
BR2026-0000-009151
Intents
unclaimed
Low: Information leak in Intents (reported 2026-03-29)
Credited as Google
CVE-2026-79184
BR2026-0000-009152
Preload
unclaimed
Low: Missing authorization in Preload (reported 2026-03-29)
Credited as Google
CVE-2026-79289
BR2026-0000-009153
Workers
unclaimed
Low: Improper control of a resource through its lifetime in Workers (reported 2026-03-30)
Credited as Google
CVE-2026-79001
BR2026-0000-009154
Bluetooth
unclaimed
Low: Information leak in Bluetooth (reported 2026-04-07)
Credited as Google
CVE-2026-79077
BR2026-0000-009155
WebProtect
unclaimed
Low: Incorrect authorization in WebProtect (reported 2026-04-10)
Credited as Google
CVE-2026-78950
BR2026-0000-009156
WebRTC
unclaimed
Low: Integer overflow in WebRTC (reported 2026-04-12)
Credited as Ashutosh
CVE-2026-79196
BR2026-0000-009157
Editing
unclaimed
Low: Race condition in Editing (reported 2026-04-13)
Credited as Google
CVE-2026-79000
BR2026-0000-009158
DeviceBoundSessionCredentials
unclaimed
Low: Improper input validation in DeviceBoundSessionCredentials (reported 2026-04-14)
Credited as Google
CVE-2026-78979
BR2026-0000-009159
Core
unclaimed
Low: Race condition in Core (reported 2026-04-17)
Credited as Google
CVE-2026-79181
BR2026-0000-009160
Glic
unclaimed
Low: Observable discrepancy in Glic (reported 2026-04-26)
Credited as Google
CVE-2026-79190
BR2026-0000-009161
Extensions
unclaimed
Low: Incorrect authorization in Extensions (reported 2026-05-14)
Credited as Google
CVE-2026-79206
BR2026-0000-009162
FileSystem
unclaimed
Low: Out of bounds read in FileSystem (reported 2026-05-15)
Credited as Google
CVE-2026-78897
BR2026-0000-009163
BrowserTag
unclaimed
Low: Missing authorization in BrowserTag (reported 2026-05-15)
Credited as Google
CVE-2026-79119
BR2026-0000-009164
PDF
unclaimed
Low: Use after free in PDF (reported 2026-05-15)
Credited as Google
CVE-2026-79089
BR2026-0000-009165
Transactions Platform
unclaimed
Low: Race condition in Transactions Platform (reported 2026-05-16)
Credited as Google
CVE-2026-79147
BR2026-0000-009166
Skia
unclaimed
Low: Information leak in Skia (reported 2026-05-17)
Credited as Google
CVE-2026-79098
BR2026-0000-009167
PermissionElement
unclaimed
Low: UI misrepresentation in PermissionElement (reported 2026-05-17)
Credited as Google
CVE-2026-79022
BR2026-0000-009168
Transactions Platform
unclaimed
Low: UI misrepresentation in Transactions Platform (reported 2026-05-17)
Credited as Google
CVE-2026-79233
BR2026-0000-009169
CustomTabs
unclaimed
Low: UI misrepresentation in CustomTabs (reported 2026-05-17)
Credited as Google
CVE-2026-79261
BR2026-0000-009170
Controls
unclaimed
Low: Incorrect authorization in Controls (reported 2026-05-18)
Credited as Google
CVE-2026-78977
BR2026-0000-009171
GPU
unclaimed
Low: Uninitialized resource in GPU (reported 2026-05-26)
Credited as Google
CVE-2026-79040
BR2026-0000-009172
GPU
unclaimed
Low: Uninitialized resource in GPU (reported 2026-05-27)
Credited as Google
CVE-2026-79273
BR2026-0000-009173
WebView
unclaimed
Low: Incorrect reference resolution in WebView (reported 2026-05-27)
Credited as Google
CVE-2026-79243
BR2026-0000-009174
ReadingList
unclaimed
Low: Improper input validation in ReadingList (reported 2026-05-28)
Credited as Orange Tsai (@orange_8361) of DEVCORE Research Team
CVE-2026-79123
BR2026-0000-009175
NTP Footer
unclaimed
Low: Improper input validation in NTP Footer (reported 2026-05-28)
Credited as Orange Tsai (@orange_8361) of DEVCORE Research Team
CVE-2026-79005
BR2026-0000-009176
StorageAccessAPI
unclaimed
Low: Incorrect authorization in StorageAccessAPI (reported 2026-05-28)
Credited as Google
CVE-2026-79090
BR2026-0000-009177
Actor
unclaimed
Low: Improper privilege management in Actor (reported 2026-05-29)
Credited as Google
CVE-2026-78946
BR2026-0000-009178
Select
unclaimed
Low: Incorrect authorization in Select (reported 2026-05-29)
Credited as Google
CVE-2026-78968
BR2026-0000-009179
Core
unclaimed
Low: Missing authorization in Core (reported 2026-05-30)
Credited as Google
CVE-2026-79041
BR2026-0000-009180
Browser
unclaimed
Low: Missing authorization in Browser (reported 2026-05-30)
Credited as Google
CVE-2026-79284
BR2026-0000-009181
Core
unclaimed
Low: UI misrepresentation in Core (reported 2026-06-02)
Credited as Google
CVE-2026-78896
BR2026-0000-009182
StorageAccessAPI
unclaimed
Low: Information leak in StorageAccessAPI (reported 2026-06-02)
Credited as Google
CVE-2026-79058
BR2026-0000-009183
Passwords
unclaimed
Low: Missing authorization in Passwords (reported 2026-06-02)
Credited as Google
CVE-2026-79009
BR2026-0000-009184
UI
unclaimed
Low: UI misrepresentation in UI (reported 2026-06-02)
Credited as Google
CVE-2026-79060
BR2026-0000-009185
StorageAccessAPI
unclaimed
Low: Incorrect authorization in StorageAccessAPI (reported 2026-06-02)
Credited as Google
CVE-2026-79177
BR2026-0000-009186
Media
unclaimed
Low: Incorrect authorization in Media (reported 2026-06-04)
Credited as Google
CVE-2026-78956
BR2026-0000-009187
V8
unclaimed
Low: Type confusion in V8 (reported 2026-06-04)
Credited as Google
CVE-2026-79239
BR2026-0000-009188
Tint
unclaimed
Low: Out of bounds read in Tint (reported 2026-06-07)
Credited as Michal Andryskowski
CVE-2026-79239
BR2026-0000-009189
Tint
unclaimed
Low: Out of bounds read in Tint (reported 2026-06-07)
Credited as Imperial College London
CVE-2026-79015
BR2026-0000-009190
ServiceWorker
unclaimed
Low: Improper input validation in ServiceWorker (reported 2026-06-10)
Credited as Google