Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Chrome 153 Update Addresses Critical Security Flaws

Chrome 153 Update Addresses Critical Security Flaws

Posted on September 16, 2026 By CWS

Google has launched the Chrome 153 update, addressing a total of 42 security vulnerabilities, some of which are deemed critical. This update is incrementally rolling out on Windows, macOS, and Linux, with version 153.0.8010.47/.48 available for the first two and 153.0.8010.47 for the latter.

Critical Vulnerabilities Identified

The update resolves three major vulnerabilities, each classified as Critical. CVE-2026-91721 is a use-after-free issue within Chrome’s Internals, identified by researcher xinyang. Another, CVE-2026-91749, affects Workers and was reported by WinD39–Huynh Dinh Vu. Additionally, CVE-2026-91726 involves an out-of-bounds read in WebGL, discovered internally by Google.

Use-after-free vulnerabilities occur when software refers to memory after it has been freed, leading to potential security risks such as data exposure or arbitrary code execution. The WebGL flaw is particularly concerning as it involves out-of-bounds memory access, which can lead to unanticipated application behavior.

Additional High-Severity Flaws

Chrome 153 also corrects 27 High-severity vulnerabilities. These include various use-after-free bugs across components like Input, Skia, and V8. Type confusion and race conditions are also addressed in components such as Compositing, CacheStorage, and ServiceWorker. Furthermore, issues like integer overflows and improper state validation are part of the update.

Authorization and validation weaknesses further extend the scope of this update. Corrections include authorization problems within Core and WebUI, along with uninitialized resource bugs in ANGLE and Skia. This comprehensive approach highlights the challenges in securing a modern browser environment.

Steps for Users and Administrators

Users are encouraged to navigate to Chrome’s menu, select Help, and then About Google Chrome to initiate the update process, followed by a browser relaunch. While Chrome updates typically occur in the background, a restart is necessary to apply the changes.

Enterprise administrators should expedite the deployment of this update, ensuring all managed devices reflect the new version. It is crucial to check for any systems restricted by update policies or pending restarts. Google provides centralized management tools for Windows, allowing policy reviews at chrome://policy.

Security teams should verify that all installations and alternate channels are updated and confirm users have relaunched their browsers. Simply enabling automatic updates does not guarantee the latest version is operational across all systems.

Google acknowledges the contributions of AddressSanitizer, MemorySanitizer, and other tools in identifying these security issues. Given the importance of this update, users are advised to ensure their Chrome browser is up-to-date to mitigate potential risks.

Cyber Security News Tags:browser security, browser vulnerabilities, Chrome update, critical vulnerabilities, CVE, Google Chrome, Google security, Linux, macOS, security flaws, software update, update management, use-after-free, WebGL, Windows

Post navigation

Previous Post: Critical cPanel Security Flaw in LiteSpeed Server Fixed

Related Posts

Cloaking Platform 1Campaign Bypasses Google Ads Security Cloaking Platform 1Campaign Bypasses Google Ads Security Cyber Security News
Hackers Can Use GenAI to Change Loaded Clean Page Into Malicious within Seconds Hackers Can Use GenAI to Change Loaded Clean Page Into Malicious within Seconds Cyber Security News
Hackers Can Manipulate Claude AI APIs with Indirect Prompts to Steal User Data Hackers Can Manipulate Claude AI APIs with Indirect Prompts to Steal User Data Cyber Security News
Bloody Wolf Hackers Mimic as Government Agencies to Deploy NetSupport RAT via Weaponized PDF’s Bloody Wolf Hackers Mimic as Government Agencies to Deploy NetSupport RAT via Weaponized PDF’s Cyber Security News
Google Releases Urgent Chrome Security Patch for Critical Flaws Google Releases Urgent Chrome Security Patch for Critical Flaws Cyber Security News
Humata Health Enhances Security with AccuKnox Partnership Humata Health Enhances Security with AccuKnox Partnership Cyber Security News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Chrome 153 Update Addresses Critical Security Flaws
  • Critical cPanel Security Flaw in LiteSpeed Server Fixed
  • Homebrew 7.0.0 Unveils Vulnerability Scanner and Enhanced Security
  • Major Breach at Japan’s Digital Agency Exposes 240,000 Records
  • Critical Cisco Email Gateway Flaw Exploited, CISA Warns

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • September 2026
  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Chrome 153 Update Addresses Critical Security Flaws
  • Critical cPanel Security Flaw in LiteSpeed Server Fixed
  • Homebrew 7.0.0 Unveils Vulnerability Scanner and Enhanced Security
  • Major Breach at Japan’s Digital Agency Exposes 240,000 Records
  • Critical Cisco Email Gateway Flaw Exploited, CISA Warns

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark